Project Name | Stars | Downloads | Repos Using This | Packages Using This | Most Recent Commit | Total Releases | Latest Release | Open Issues | License | Language |
---|---|---|---|---|---|---|---|---|---|---|
Threathunter Playbook | 3,826 | 2 months ago | 5 | mit | Python | |||||
A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient. | ||||||||||
Helk | 3,633 | 3 years ago | 37 | gpl-3.0 | Jupyter Notebook | |||||
The Hunting ELK | ||||||||||
Securityonion | 2,589 | 3 months ago | 58 | Shell | ||||||
Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, and case management. It also includes other tools such as Playbook, osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek. | ||||||||||
Malwoverview | 2,492 | 6 months ago | 42 | October 29, 2023 | 2 | gpl-3.0 | Python | |||
Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest and it is able to scan Android devices against VT. | ||||||||||
Hayabusa | 1,800 | 3 months ago | 33 | gpl-3.0 | Rust | |||||
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs. | ||||||||||
Cyberthreathunting | 755 | 5 months ago | gpl-3.0 | Python | ||||||
A collection of resources for Threat Hunters - Sponsored by Falcon Guard | ||||||||||
Threathunting | 495 | 8 months ago | gpl-3.0 | YARA | ||||||
Tools for hunting for threats. | ||||||||||
Mdatp | 429 | 4 months ago | 2 | mit | PowerShell | |||||
Microsoft Defender XDR - Resource Hub | ||||||||||
Adama | 226 | 3 years ago | 4 | other | ||||||
Searches For Threat Hunting and Security Analytics | ||||||||||
Microsoft Sentinel Secops | 211 | 6 months ago | mit | PowerShell | ||||||
Microsoft Sentinel SOC Operations |