mihari
Threat hunter
An aggregator tool for querying multiple services to gather threat intelligence data.
A query aggregator for OSINT based threat hunting
870 stars
22 watching
101 forks
Language: Ruby
last commit: about 2 months ago osintthreat-huntingthreat-intelligence
Related projects:
Repository | Description | Stars |
---|---|---|
matamorphosis/scrummage | A platform for searching and analyzing publicly available online data to detect potential security threats | 515 |
a3sal0n/cyberthreathunting | A collection of tools and resources for threat hunters to identify and respond to cyber threats. | 861 |
otrf/threathunter-playbook | A community-driven project providing shared detection logic and resources for threat hunting | 4,049 |
gossithedog/threathunting | Tools and rules for detecting malicious domain calls in endpoint malware | 570 |
aboutsecurity/rastrea2r | A tool for hunting and tracking Internet of Things (IoT) security threats by collecting and analyzing indicators of compromise (IOCs) | 116 |
sbousseaden/slides | Collection of resources and concepts for threat hunting and detection engineering. | 372 |
miladaslaner/threathunt | A PowerShell repository to simulate and train threat hunting skills without malicious files. | 134 |
threathuntingproject/threathunting | An informational repository providing resources and knowledge for detecting adversaries in IT environments. | 1,726 |
kunai-project/kunai | An eBPF-based tool for comprehensive Linux event monitoring and analysis | 403 |
sapphirex00/threat-hunting | A collection of threat intelligence resources and tools for analyzing APT malware | 257 |
abhinavbom/threat-intelligence-hunter | An intelligence tool for searching and storing indicators across multiple security feeds. | 149 |
inquest/threatingestor | Extracts and aggregates threat intelligence from various sources | 836 |
netevert/sentinel-attack | A tool to quickly deploy a threat hunting capability on Azure Sentinel using Sysmon and MITRE ATT&CK | 1,062 |
kevthehermit/pastehunter | Automates scanning of publicly hosted pasted data against Yara rules to identify potential security or research threats. | 1,069 |
olafhartong/threathunting | A Splunk application designed to guide threat hunts by mapping investigations to the MITRE ATT&CK framework | 1,141 |