Repository navigation

#

threat-detection

✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️

4340
1 年前

Proactive, Open source API security → API discovery, API Security Posture, Testing in CI/CD, Test Library with 1000+ Tests, Add custom tests, Sensitive data exposure

Java
1386
2 天前

Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying malicious or unauthorized activity before it negatively impacts an individual or an organization.

1064
3 个月前

Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).

Jupyter Notebook
767
20 小时前

A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).

733
1 个月前

Open source platform for cyber security analysts with many features for threat intelligence and detection engineering.

JavaScript
722
2 个月前

select * from logs; Tailpipe is an open source SIEM for instant log insights, powered by DuckDB. Analyze millions of events in seconds, right from your terminal.

Go
501
10 小时前

A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.

Go
382
1 年前

A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework

PowerShell
351
5 年前

Community Security Analytics provides a set of community-driven audit & threat queries for Google Cloud

Python
345
1 年前

Threatest is a CLI and Go framework for end-to-end testing threat detection rules.

Go
334
5 个月前

A starter pack of resources to help you get started in Detection Engineering.

172
1 个月前

🔥 一个集成多源威胁情报的聚合平台,为安全研究人员和运维团队提供实时威胁情报查询和播报服务;集成阿里云WAF主动拦截威胁IP,钓鱼邮件实时监测,集成AI等多项常用安全类工具🔧

Vue
156
7 天前