| Security-Onion-Solutions/securityonion |
2,589 |
|
0 |
0 |
about 2 years ago |
0 |
|
58 |
|
Shell |
| Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, and case management. It also includes other tools such as Playbook, osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek. |
| alexandreborges/malwoverview |
2,492 |
|
0 |
0 |
over 2 years ago |
42 |
October 29, 2023 |
2 |
gpl-3.0 |
Python |
| Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest and it is able to scan Android devices against VT. |
| Yamato-Security/hayabusa |
1,800 |
|
0 |
0 |
about 2 years ago |
0 |
|
33 |
gpl-3.0 |
Rust |
| Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs. |
| microsoft/Microsoft-365-Defender-Hunting-Queries |
1,786 |
|
0 |
0 |
about 4 years ago |
0 |
|
49 |
mit |
Jupyter Notebook |
| Sample queries for Advanced hunting in Microsoft 365 Defender |
| A3sal0n/CyberThreatHunting |
755 |
|
0 |
0 |
over 2 years ago |
0 |
|
0 |
gpl-3.0 |
Python |
| A collection of resources for Threat Hunters - Sponsored by Falcon Guard |
| lawndoc/AdvancedHuntingQueries |
73 |
|
0 |
0 |
over 2 years ago |
0 |
|
0 |
unlicense |
|
| Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant |
| ceramicskate0/SWELF |
24 |
|
0 |
0 |
almost 3 years ago |
0 |
|
15 |
agpl-3.0 |
C# |
| Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at https://github.com/ceramicskate0/SWELF/releases/latest. |
| Kirtar22/ThreatHunting_with_Osquery |
11 |
|
0 |
0 |
over 5 years ago |
0 |
|
0 |
|
|
| Threat Hunting & Incident Investigation with Osquery |
| viszsec/CyberSecurity-Playground |
6 |
|
0 |
0 |
over 2 years ago |
0 |
|
0 |
|
|
| CyberSecurity Resources (Threat Intelligence, Malware Analysis, Pentesting, DFIR, etc) |
| svch0stz/TheThreatHuntLibrary |
5 |
|
0 |
0 |
over 5 years ago |
0 |
|
0 |
unlicense |
Python |
| Library of threat hunts to get any user started! |