kunai

Event monitor

An eBPF-based tool for comprehensive Linux event monitoring and analysis

Threat-hunting tool for Linux

GitHub

403 stars
11 watching
23 forks
Language: Rust
last commit: almost 2 years ago
ebpflinuxsecurity-monitoringthreat-detectionthreat-hunting

Related projects:

RepositoryDescriptionStars
ninoseki/mihariAn aggregator tool for querying multiple services to gather threat intelligence data.870
a3sal0n/cyberthreathuntingA collection of tools and resources for threat hunters to identify and respond to cyber threats.861
threathuntingproject/threathuntingAn informational repository providing resources and knowledge for detecting adversaries in IT environments.1,726
miladaslaner/threathuntA PowerShell repository to simulate and train threat hunting skills without malicious files.134
gossithedog/threathuntingTools and rules for detecting malicious domain calls in endpoint malware570
sk4la/plastA modular threat-hunting tool framework for detecting indicators of compromise in incident-response operations.17
opencybersecurityalliance/kestrel-langA language and runtime framework for building reusable, composable threat hunting workflows using Python.302
otrf/threathunter-playbookA community-driven project providing shared detection logic and resources for threat hunting4,049
sbousseaden/slidesCollection of resources and concepts for threat hunting and detection engineering.372
fr0gger/yetiAn open-source platform designed to collect, organize, and provide insights on threat intelligence data1
aboutsecurity/rastrea2rA tool for hunting and tracking Internet of Things (IoT) security threats by collecting and analyzing indicators of compromise (IOCs)116
matamorphosis/scrummageA platform for searching and analyzing publicly available online data to detect potential security threats515
sapphirex00/threat-huntingA collection of threat intelligence resources and tools for analyzing APT malware257
kasperskylab/klaraHelps Threat Intelligence researchers hunt for new malware by efficiently scanning large collections of files with Yara rules698
netevert/sentinel-attackA tool to quickly deploy a threat hunting capability on Azure Sentinel using Sysmon and MITRE ATT&CK1,062