ThreatHunting

Threat detection resource

An informational repository providing resources and knowledge for detecting adversaries in IT environments.

An informational repo about hunting for adversaries in your IT environment.

GitHub

2k stars
224 watching
377 forks
last commit: almost 5 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
a3sal0n/cyberthreathuntingA collection of tools and resources for threat hunters to identify and respond to cyber threats.861
otrf/threathunter-playbookA community-driven project providing shared detection logic and resources for threat hunting4,049
sbousseaden/slidesCollection of resources and concepts for threat hunting and detection engineering.372
miladaslaner/threathuntA PowerShell repository to simulate and train threat hunting skills without malicious files.134
gossithedog/threathuntingTools and rules for detecting malicious domain calls in endpoint malware570
matamorphosis/scrummageA platform for searching and analyzing publicly available online data to detect potential security threats515
ch33r10/bluespace2021A collection of resources and training materials focused on threat hunting and cyber-threat intelligence.13
ninoseki/mihariAn aggregator tool for querying multiple services to gather threat intelligence data.870
sk4la/plastA modular threat-hunting tool framework for detecting indicators of compromise in incident-response operations.17
sapphirex00/threat-huntingA collection of threat intelligence resources and tools for analyzing APT malware257
redhuntlabs/redhunt-osA virtual machine designed to emulate adversary attacks and support threat hunting efforts1,249
kunai-project/kunaiAn eBPF-based tool for comprehensive Linux event monitoring and analysis403
inquest/threatingestorExtracts and aggregates threat intelligence from various sources836
threatexpress/domainhunterTools for identifying suitable domains for malicious activities1,554
olafhartong/threathuntingA Splunk application designed to guide threat hunts by mapping investigations to the MITRE ATT&CK framework1,141