mihari

Threat hunter

An aggregator tool for querying multiple services to gather threat intelligence data.

A query aggregator for OSINT based threat hunting

GitHub

870 stars
22 watching
101 forks
Language: Ruby
last commit: about 2 months ago
osintthreat-huntingthreat-intelligence

Related projects:

Repository Description Stars
matamorphosis/scrummage A platform for searching and analyzing publicly available online data to detect potential security threats 515
a3sal0n/cyberthreathunting A collection of tools and resources for threat hunters to identify and respond to cyber threats. 861
otrf/threathunter-playbook A community-driven project providing shared detection logic and resources for threat hunting 4,049
gossithedog/threathunting Tools and rules for detecting malicious domain calls in endpoint malware 570
aboutsecurity/rastrea2r A tool for hunting and tracking Internet of Things (IoT) security threats by collecting and analyzing indicators of compromise (IOCs) 116
sbousseaden/slides Collection of resources and concepts for threat hunting and detection engineering. 372
miladaslaner/threathunt A PowerShell repository to simulate and train threat hunting skills without malicious files. 134
threathuntingproject/threathunting An informational repository providing resources and knowledge for detecting adversaries in IT environments. 1,726
kunai-project/kunai An eBPF-based tool for comprehensive Linux event monitoring and analysis 403
sapphirex00/threat-hunting A collection of threat intelligence resources and tools for analyzing APT malware 257
abhinavbom/threat-intelligence-hunter An intelligence tool for searching and storing indicators across multiple security feeds. 149
inquest/threatingestor Extracts and aggregates threat intelligence from various sources 836
netevert/sentinel-attack A tool to quickly deploy a threat hunting capability on Azure Sentinel using Sysmon and MITRE ATT&CK 1,062
kevthehermit/pastehunter Automates scanning of publicly hosted pasted data against Yara rules to identify potential security or research threats. 1,069
olafhartong/threathunting A Splunk application designed to guide threat hunts by mapping investigations to the MITRE ATT&CK framework 1,141