Explore Projects

Discover 33 open source projects

Active filters (1):
Search: threat-huntingร—
Clear all

Showing 1-20 of 33 projects

OISF/suricata

Suricata is a powerful network security monitoring engine for intrusion detection and prevention.

6.0K
Active
C
Cybersecurity
API Frameworks
#cybersecurity#ids#ips

elceef/dnstwist

A Python library for detecting homograph phishing attacks, typo squatting, and brand impersonation through domain name permutation.

5.6K
Experimental
Python
Security Research
CLI Tools
Python
#dns#domains#fuzzing

SwiftOnSecurity/sysmon-config

High-quality Sysmon configuration template for advanced Windows security monitoring and threat hunting

5.4K
Archived
Security Research
Windows
#logging#monitoring#netsec

0x4D31/awesome-threat-detection

A curated list of awesome resources for threat detection and incident response.

4.5K
Active
Security Research
Threat Detection
#threat-detection#incident-response#security-research

OTRF/ThreatHunter-Playbook

Open-source threat hunting playbook for detection development efficiency

4.5K
Active
Python
React
#threat-hunting#detection#hunting-campaigns

intelowlproject/IntelOwl

IntelOwl: A comprehensive threat intelligence management platform for security professionals.

4.5K
Active
Python
Security Research
API Frameworks
Python
#cyber-security#threat-intelligence#malware-analysis

Security-Onion-Solutions/securityonion

Security Onion is an open-source security monitoring and threat hunting platform.

4.4K
Active
Shell
Security Tools
Authentication
#cyber-security#threat-hunting#intrusion-detection

Cyb3rWard0g/HELK

An open-source threat hunting platform built on the ELK stack for security researchers and analysts.

3.9K
Archived
Jupyter Notebook
Search
Testing
#threat-hunting#security#elk-stack

WithSecureLabs/chainsaw

A Rust-based tool for rapidly searching and hunting through Windows forensic artifacts.

3.5K
Stable
Rust
Security Research
CLI Tools
#attack#blueteam#chainsaw

teler-sh/teler

Teler is a real-time HTTP intrusion detection system written in Go for analyzing logs and detecting threats.

3.1K
Archived
Go
Intrusion Detection
API Frameworks
#intrusion-detection#log-analysis#threat-hunting

Yamato-Security/hayabusa

Hayabusa is a Rust-based threat hunting and forensics timeline generator for Windows event logs.

3.0K
Active
Rust
Security Research
CLI Tools
#cybersecurity#threat-hunting#forensics

olafhartong/sysmon-modular

A modular sysmon configuration repository for security monitoring and threat hunting.

3.0K
Archived
PowerShell
Security Research
CLI Tools
#sysmon#mitre-attack#threat-hunting

blackorbird/APT_REPORT

A repository that collects interesting APT reports and special IOCs for cybersecurity researchers and threat hunters.

2.9K
Active
Python
Security Research
Threat-Hunting
#apt#cybersecurity#malware

Neo23x0/signature-base

YARA signature database for threat detection, malware analysis, and security scanning

2.9K
Active
YARA
Security Research
CLI Tools
YARA
#yara-rules#threat-hunting#dfir

sbousseaden/EVTX-ATTACK-SAMPLES

A curated collection of Windows Event Log samples for security research and threat hunting.

2.5K
Archived
HTML
Security Research
CLI Tools
#windows-security#threat-hunting#dfir

elastic/detection-rules

An open-source library for creating security detection rules and threat hunting content.

2.5K
Active
Python
Security Research
#threat-detection#threat-hunting#security-research

yeti-platform/yeti

An open-source threat intelligence platform for cybersecurity professionals and researchers.

2.0K
Active
Python
Security Research
API Clients & Testing
Python
#threat-intelligence#cybersecurity#enrichment

AmnestyTech/investigations

This repository provides indicators of compromise from Amnesty International's cyber investigations.

1.6K
Archived
Python
Security Research
Threat-hunting
#forensics#spyware#threat-hunting

Bert-JanP/Hunting-Queries-Detection-Rules

Collection of KQL queries for Advanced Hunting, Detection, and Threat Hunting in Azure Sentinel and Defender for Endpoint.

1.6K
Active
Python
Security Research
API Frameworks
#cybersecurity#azure#threat-hunting

StamusNetworks/Clear-NDR-ISO

A Suricata-based network detection and response (NDR) distribution for security monitoring and threat hunting.

1.6K
Stable
Shell
Network Security
Monitoring
#network-intrusion-detection#network-security#security-monitoring
2

Stay in the loop

Get weekly updates on trending AI coding tools and projects.