Threat Hunting

Threat hunting tools and platforms for proactive threat detection, advanced persistent threat (APT) discovery, and security investigation.

Explore 75 curated cybersecurity tools, with 14,802+ visitors searching for solutions

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Get Featured

Feature your product and reach thousands of professionals.

Investigative Analytics Platform by Cognyte Logo

An investigative analytics platform that uses machine learning to fuse and analyze data from multiple sources, enabling security organizations to extract insights and identify patterns for threat prevention and complex investigations.

0
System Two Security Logo

An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.

0
Akamai Hunt Logo

Akamai Hunt is a managed threat hunting service that detects and remediates evasive security risks in network environments using data analysis, AI, and expert investigation.

0
Kunai Logo

Kunai is a Linux-based system monitoring tool that provides real-time monitoring and threat hunting capabilities.

0
anew Logo

A tool for adding new lines to files, skipping duplicates.

0
gaussrf Logo

A tool for identifying potential security threats by fetching known URLs and filtering out URLs with open redirection or SSRF parameters.

0
Detecting the Elusive - Active Directory Threat Hunting Logo

A comprehensive resource for threat hunting in Active Directory environments, covering tracking command-line/PowerShell activity, Kerberoasting detection, auditing attacker activity, and monitoring enterprise command-line activity.

0
OTE Logo

A powerful OSINT tool for creating custom templates for data extraction and analysis

0
Falco Rules Logo

A repository of officially managed detection rules for the Falco runtime security monitoring system that identifies threats, abnormal behaviors, and compliance violations through syscall and container event analysis.

0
YLS Language Server for YARA Language Logo

YLS Language Server for YARA Language with comprehensive features and Python 3.8 support.

0
Private Yara Rules Repository Logo

A repository of freely usable Yara rules for detection systems, with automated error detection workflows.

0
plast Logo

Modular Threat Hunting Tool & Framework

0
Golismero Logo

A free and open-source OSINT framework for gathering and analyzing data from various sources

0
Cyber Threat Hunting Logo

A collection of tools and resources for threat hunters.

0
Chaos Client Logo

A Go client to communicate with Chaos DB API

0
YaraDbg Logo

A free web-based Yara debugger for security analysts to write hunting or detection rules with ease.

0
Windows-Hunting Logo

A repository to aid Windows threat hunters in looking for common artifacts.

0
Sentinel ATT&CK Logo

A threat hunting capability that leverages Sysmon and MITRE ATT&CK on Azure Sentinel

0
HASSH Logo

A Profiling Method for SSH Clients and Servers.

0
GitMiner Logo

A powerful tool for searching and scraping data from GitHub

0
Revoke-Obfuscation v1.0 Logo

A PowerShell obfuscation detection framework designed to highlight the limitations of signature-based detection and provide a scalable means of detecting known and unknown obfuscation techniques.

0
Sophos AI YaraML Rules Repository Logo

A tool that generates Yara rules from training data using logistic regression and random forest classifiers.

0
Community Security Analytics (CSA) Logo

A community-driven repository of pre-built security analytics queries and rules for monitoring and detecting threats in Google Cloud environments across various log sources and activity types.

0
ThreatHunting Logo

A Splunk app mapped to MITRE ATT&CK to guide threat hunts.

0

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.

14
Mandos Brief Newsletter Logo

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

7
CloudDefense.AI Logo

CloudDefense.AI is a Cloud Native Application Protection Platform (CNAPP) that safeguards cloud infrastructure and cloud-native apps with expertise, precision, and confidence.

7
Fabric Platform by BlackStork Logo

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

6
TestSavantAI Logo

Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.

5
View Popular Tools →