Short deep dive into Threat Hunting on AWS
☆19Oct 15, 2023Updated 2 years ago
Alternatives and similar repositories for aws-threat-hunting
Users that are interested in aws-threat-hunting are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆39Aug 23, 2022Updated 3 years ago
- Two hacking challenges related to HTTP request smuggling☆20Mar 22, 2022Updated 4 years ago
- 🐻❄️ 🏹 Threat hunting with Polars and flaws.cloud AWS CloudTrail datasets.☆14May 22, 2024Updated 2 years ago
- Yoink is a quick tool for use with Obsidian that will allow you to take a markdown file and package it up into a folder that will allow y…☆18Aug 31, 2023Updated 2 years ago
- Listing of YARA rules I wrote for Live and Retro hunts. Includes Jupyter infostealer, suspicious powershell, dll hijacking, vbs downloade…☆16Jun 26, 2026Updated last month
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Sigma detection rules for hunting with the threathunting-keywords project☆60Mar 2, 2025Updated last year
- Extract CIS benchmarks from PDFs☆16Jul 19, 2026Updated last week
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆70Dec 2, 2022Updated 3 years ago
- A catalog of services that can be publicly exposed within different cloud providers.☆14Aug 30, 2024Updated last year
- Offensive Terraform module which copies publicly exposed EBS snapshot to us-east-1 region in attacker's AWS account and creates EBS volum…☆14Sep 18, 2020Updated 5 years ago
- yara detection rules for hunting with the threathunting-keywords project☆166May 11, 2025Updated last year
- Alternative password shadowing scheme☆10Jul 20, 2026Updated last week
- ☆11Feb 9, 2023Updated 3 years ago
- Detection Rule License (DRL)☆22Dec 27, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Perform file-based malware scan on your on-prem servers with AWS☆14Oct 31, 2023Updated 2 years ago
- 🌌 Real-time threat detection for smart contracts☆10May 16, 2023Updated 3 years ago
- ☆378Feb 23, 2024Updated 2 years ago
- A dataset containing Office 365 Unified Audit Logs for security research and detection☆62Jun 7, 2022Updated 4 years ago
- LLM Supported Attack Scenario Creator from Code Review☆14Oct 22, 2024Updated last year
- ☆14Jun 1, 2023Updated 3 years ago
- Event Query Router☆12Aug 9, 2019Updated 6 years ago
- This directory contains random scripts from threat hunting or malware research☆11Feb 15, 2018Updated 8 years ago
- ☆15Sep 26, 2022Updated 3 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Evil Inject Finder Remote Capability and Parser☆11Nov 22, 2018Updated 7 years ago
- PowerShell version of Fail2Ban☆14Oct 10, 2019Updated 6 years ago
- Legacy password hashing framework for PHP applications needing to support or having previously supported PHP below 5.5☆15Nov 22, 2024Updated last year
- Generate representative samples from Pwned Passwords (HIBP)☆11Jan 6, 2022Updated 4 years ago
- CLI Search for Security Operators of MITRE ATT&CK URLs☆17Jan 5, 2023Updated 3 years ago
- Queries for Carbon Black Response☆11Feb 11, 2020Updated 6 years ago
- ☆30Jan 13, 2026Updated 6 months ago
- Threat-informed defense and cyber threat intelligence (CTI) analysis platform that correlates APT groups, MITRE ATT&CK tactics and techni…☆16Nov 4, 2025Updated 8 months ago
- An AI-backed threat hunting assistant that aligns to the PEAK framework.☆58Jun 1, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆61Mar 12, 2022Updated 4 years ago
- Lists of Dynamic DNS Domains/FQDNs as well as lists of services/providers that offer free dynamic dns domains.☆14Nov 2, 2021Updated 4 years ago
- Small container runtime for threat detection☆15Apr 13, 2025Updated last year
- Test Suite for John the Ripper☆26Dec 28, 2025Updated 7 months ago
- A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.☆35Jul 23, 2024Updated 2 years ago
- Quick script to build host or investigation timelines using Carbon Black Response☆12Sep 25, 2018Updated 7 years ago
- ETHICAL-HACKING☆14Dec 20, 2023Updated 2 years ago