Project Name | Stars | Downloads | Repos Using This | Packages Using This | Most Recent Commit | Total Releases | Latest Release | Open Issues | License | Language |
---|---|---|---|---|---|---|---|---|---|---|
Wazuh | 8,176 | 2 months ago | 2,701 | other | C | |||||
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads. | ||||||||||
Misp | 4,835 | 2 months ago | 2,386 | agpl-3.0 | PHP | |||||
MISP (core software) - Open Source Threat Intelligence and Sharing Platform | ||||||||||
Opencti | 4,275 | 2 months ago | 786 | other | JavaScript | |||||
Open Cyber Threat Intelligence Platform | ||||||||||
Intelowl | 2,995 | 2 months ago | 93 | agpl-3.0 | Python | |||||
IntelOwl: manage your Threat Intelligence at scale | ||||||||||
Securityonion | 2,589 | 2 months ago | 58 | Shell | ||||||
Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, and case management. It also includes other tools such as Playbook, osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek. | ||||||||||
Malwoverview | 2,492 | 5 months ago | 42 | October 29, 2023 | 2 | gpl-3.0 | Python | |||
Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest and it is able to scan Android devices against VT. | ||||||||||
Hayabusa | 1,800 | 2 months ago | 33 | gpl-3.0 | Rust | |||||
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs. | ||||||||||
Adversary_emulation_library | 1,419 | 3 months ago | 23 | apache-2.0 | C | |||||
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs. | ||||||||||
Intelmq | 869 | 2 | 3 | 2 months ago | 49 | August 28, 2023 | 199 | agpl-3.0 | Python | |
IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol. | ||||||||||
Cyberthreathunting | 755 | 4 months ago | gpl-3.0 | Python | ||||||
A collection of resources for Threat Hunters - Sponsored by Falcon Guard |