| wazuh/wazuh |
8,176 |
|
0 |
0 |
about 2 years ago |
0 |
|
2,701 |
other |
C |
| Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads. |
| MISP/MISP |
4,835 |
|
0 |
0 |
about 2 years ago |
0 |
|
2,386 |
agpl-3.0 |
PHP |
| MISP (core software) - Open Source Threat Intelligence and Sharing Platform |
| OpenCTI-Platform/opencti |
4,275 |
|
0 |
0 |
about 2 years ago |
0 |
|
786 |
other |
JavaScript |
| Open Cyber Threat Intelligence Platform |
| fabacab/awesome-cybersecurity-blueteam |
3,769 |
|
0 |
0 |
about 2 years ago |
0 |
|
11 |
|
|
| :computer:🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams. |
| intelowlproject/IntelOwl |
2,995 |
|
0 |
0 |
about 2 years ago |
0 |
|
93 |
agpl-3.0 |
Python |
| IntelOwl: manage your Threat Intelligence at scale |
| Security-Onion-Solutions/securityonion |
2,589 |
|
0 |
0 |
about 2 years ago |
0 |
|
58 |
|
Shell |
| Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, and case management. It also includes other tools such as Playbook, osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek. |
| alexandreborges/malwoverview |
2,492 |
|
0 |
0 |
over 2 years ago |
42 |
October 29, 2023 |
2 |
gpl-3.0 |
Python |
| Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest and it is able to scan Android devices against VT. |
| Yamato-Security/hayabusa |
1,800 |
|
0 |
0 |
about 2 years ago |
0 |
|
33 |
gpl-3.0 |
Rust |
| Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs. |
| center-for-threat-informed-defense/adversary_emulation_library |
1,419 |
|
0 |
0 |
over 2 years ago |
0 |
|
23 |
apache-2.0 |
C |
| An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs. |
| certtools/intelmq |
869 |
|
2 |
3 |
about 2 years ago |
49 |
August 28, 2023 |
199 |
agpl-3.0 |
Python |
| IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol. |