fibratus

Adversary hunter

Detects and mitigates advanced threat tradecraft by analyzing system events and behavior patterns

Adversary tradecraft detection, protection, and hunting

GitHub

2k stars
70 watching
194 forks
Language: Go
last commit: almost 2 years ago
Linked from 6 awesome lists

adversaryblueteamedretwgolanginstrumentationpythonsecuritywindowswindows-kernel

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
aboutsecurity/rastrea2rA tool for hunting and tracking Internet of Things (IoT) security threats by collecting and analyzing indicators of compromise (IOCs)116
binarydefense/goatriderTool to compare IP addresses or hostnames to threat intelligence feeds and detect potential security threats.138
a3sal0n/cyberthreathuntingA collection of tools and resources for threat hunters to identify and respond to cyber threats.861
otrf/threathunter-playbookA community-driven project providing shared detection logic and resources for threat hunting4,049
matamorphosis/scrummageA platform for searching and analyzing publicly available online data to detect potential security threats515
netevert/sentinel-attackA tool to quickly deploy a threat hunting capability on Azure Sentinel using Sysmon and MITRE ATT&CK1,062
guardicore/monkeyAn adversary emulation platform used to test and improve network security defenses by simulating malware infections6,697
thalesgroup-cert/watcherAutomated platform for discovering and analyzing cybersecurity threats targeting an organization869
airbnb/artificial-adversaryA tool to generate adversarial text examples and test machine learning models against them399
ninoseki/mihariAn aggregator tool for querying multiple services to gather threat intelligence data.870
nshalabi/attack-toolsUtilities for simulating adversary behavior in the context of threat intelligence and security analysis1,011
miladaslaner/threathuntA PowerShell repository to simulate and train threat hunting skills without malicious files.134
abhinavbom/threat-intelligence-hunterAn intelligence tool for searching and storing indicators across multiple security feeds.149
thunlp/openattackA Python toolkit for generating adversarial examples to test the robustness of natural language processing models699
opencybersecurityalliance/kestrel-langA language and runtime framework for building reusable, composable threat hunting workflows using Python.302