The purpose of this repository is to aid Windows threat hunters in looking for common artifacts during their day-to-day operations. Contributors are welcome to participate.
Common questions about Windows-Hunting including features, pricing, alternatives, and user reviews.
Windows-Hunting is A repository to aid Windows threat hunters in looking for common artifacts. It is a Security Operations solution designed to help security teams with Windows.
Search engine for Windows executable files and hashes, providing insights into file prevalence, behavior, and security information.
A PowerShell module for threat hunting and security analysis through Windows Event Log processing and malicious activity detection.
A managed security service that uses hypothesis-based threat hunting to proactively discover hidden threats, create new detection rules, and improve overall security posture.