☆68May 13, 2022Updated 4 years ago
Alternatives and similar repositories for ThreatHuntingJupyterNotebooks
Users that are interested in ThreatHuntingJupyterNotebooks are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- RisingSun: Decoding SUNBURST C2 to identify infected hosts without network telemetry.☆12Jan 14, 2021Updated 5 years ago
- Library of functions to apply Data Science in several forensics artifacts☆41Aug 19, 2024Updated 2 years ago
- LILO based Pulse Secure appliance disk image decryptor☆13Mar 20, 2024Updated 2 years ago
- ☆11Jun 12, 2023Updated 3 years ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆215Jul 21, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Autonomous pentesting agent — Claude Code Hackathon (Feb 10-16, 2026). The LLM builds the automation that replaces itself.☆21Feb 16, 2026Updated 6 months ago
- ATT&CK Remote Threat Hunting Incident Response☆203Dec 8, 2024Updated last year
- ☆12Jun 29, 2021Updated 5 years ago
- Cheat sheets for threat hunting, detection and other stuff.☆35Oct 7, 2022Updated 3 years ago
- ☆13Mar 28, 2026Updated 5 months ago
- YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.☆27Dec 14, 2021Updated 4 years ago
- Tool for analysis of Windows Prefetch files☆26Nov 11, 2018Updated 7 years ago
- ☆21May 10, 2023Updated 3 years ago
- Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).☆825Aug 14, 2026Updated 3 weeks ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Sabonis, a Digital Forensics and Incident Response pivoting tool☆20Mar 3, 2022Updated 4 years ago
- This Repository gives the best and possible strategies against hunting the ransomware☆26Aug 23, 2022Updated 4 years ago
- How can you track the hunting techniques you come up with?☆13Sep 3, 2017Updated 9 years ago
- Currently proof-of-concept☆17Dec 17, 2021Updated 4 years ago
- Simple tool to extract icons from a pe file and other useful information☆13Jun 22, 2018Updated 8 years ago
- Powershell Functions to interact with TheHive-Project☆11Jun 27, 2019Updated 7 years ago
- Various commands, tools, techniques that you can use to examine live Windows systems for signs of Compromise or for Threat Hunting.Can al…☆15May 30, 2026Updated 3 months ago
- A Myriad plugin for generating statically typed lossless wrappers around JToken given a schema.☆15Jul 1, 2020Updated 6 years ago
- INOFFICIAL nfdump with libnfread: library for reading netflow records from nfdump files☆13Jan 28, 2014Updated 12 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆20May 25, 2022Updated 4 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Apr 13, 2018Updated 8 years ago
- Elasticsearch/Kibana environment and log data for Sigma workshop☆27Dec 20, 2019Updated 6 years ago
- Basic c2-matrix analysis enviroment using Suricata + Wazuh + Elastic stack☆13Apr 18, 2020Updated 6 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Apr 8, 2026Updated 5 months ago
- ☆87Mar 7, 2025Updated last year
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆154Apr 25, 2022Updated 4 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆17Sep 30, 2016Updated 9 years ago
- Automation tool for Windows Deception Host Burn-In☆85Dec 4, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- TIM is a Kusto investigation platform that enables a user to quickly pivot between data sources; annotate their findings; and promotes co…☆23Aug 7, 2024Updated 2 years ago
- Recordization library☆11Jul 10, 2026Updated last month
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆251Jul 19, 2021Updated 5 years ago
- DNS Dashboard for hunting and identifying beaconing☆17Jul 29, 2020Updated 6 years ago
- Tools for hunting for threats.☆633Aug 14, 2026Updated 3 weeks ago
- Mindmaps for threat hunting - work in progress.☆151Mar 15, 2022Updated 4 years ago
- A Canary which fires when uninstalled☆34Mar 16, 2021Updated 5 years ago