Repository navigation

#

threat

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Rust
2549
9 天前

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Go
2509
9 个月前

Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysis and hunting designed for intel and malware analysts as well as threat hunters to get up and running quickly.

PowerShell
1262
2 年前
certtools/intelmq

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

Python
1031
8 天前

SkyArk helps to discover, assess and secure the most privileged entities in Azure and AWS

PowerShell
885
4 个月前

WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)

PowerShell
780
2 年前

a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations on decentralized finance

JavaScript
490
10 个月前

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

PowerShell
457
5 个月前

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security risks.

428
2 个月前

16,432 Free Yara rules created by

YARA
383
6 年前
HTML
358
21 小时前

Kestrel threat hunting language: building reusable, composable, and shareable huntflows across different data sources and threat intel.

Python
311
7 个月前

国内恶意IP封禁计划,还赛博空间一片朗朗乾坤

242
8 个月前

This project consists of an open source library allowing software to connect to data repositories using STIX Patterning, and return results as STIX Observations.

Python
241
18 天前

Collecting & Hunting for IOCs with gusto and style

Python
238
4 年前