Repository navigation

#

threathunting

Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest, VxExchange and IPInfo, and it is also able to scan Android devices against VT.

Python
3341
24 天前

Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysis and hunting designed for intel and malware analysts as well as threat hunters to get up and running quickly.

PowerShell
1277
2 年前

Actionable analytics designed to combat threats

Python
998
3 年前

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

PowerShell
787
3 年前

KQL Queries. Microsoft Defender, Microsoft Sentinel

JavaScript
725
2 天前

A robust, and flexible open source User & Entity Behavior Analytics (UEBA) framework used for Security Analytics. Developed with luv by Data Scientists & Security Analysts from the Cyber Security Industry. [PRE-ALPHA]

Python
443
1 年前

Detecting ATT&CK techniques & tactics for Linux

Roff
258
5 年前

Artifact collection tool for *nix systems

Rust
209
1 年前

An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.

Python
156
6 个月前

This little tool is to calculate a MurmurHash value of a favicon to hunt phishing websites on the Shodan platform.

Python
119
2 年前

Enhance your malware detection with WAF + YARA (WAFARAY)

Shell
109
3 年前

The FASTEST way to consume threat intel.

Python
68
2 年前

Repository for SOC analysts, queries to investigate, advanced hunting, sites for analysis, malware samples, courses to improve skills, IOC and monitoring.

63
16 天前

Sysmon config for both Windows and Linux Devices. Windows one is a bit dated

Batchfile
57
1 年前