A collection of tools and resources for threat hunters. Sections: - Hunting Tools: Open source tools for hunting like Velociraptor, osquery, GRR, ELK, Sysmon, and more. - Resources: Useful resources to get started in Threat Hunting. - Hunting with AI: Leveraging ChatGPT prompts for Threat Hunting. - Must Read: Articles and blog posts covering different aspects of Threat Hunting. - Custom Scripts: Tools and scripts to support different types of hunts.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A comprehensive Threat Intelligence Program Management Solution for managing the entire CTI lifecycle.
Stay informed with Rapid7's cybersecurity blog and vulnerability news updates.
Provides indicators of compromise (IOCs) to combat malware with Yara and Snort rules.
NECOMA focuses on data collection, threat analysis, and developing new cyberdefense mechanisms to protect infrastructure and endpoints.
Cisco Umbrella is a cloud security platform that offers protection against threats on the internet by blocking malicious activity.
Home for rules used by Elastic Security with code for unit testing, Kibana integration, and Red Team Automation.
Malware Patrol offers a range of threat intelligence solutions, including enterprise data feeds, DNS firewall, phishing threat intelligence, and small business protection.
A cybersecurity tool with online demo, mailing list, and multiple installation methods.
Facilitating exchange of information and knowledge to collectively protect against cyberattacks.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.