An AI-backed threat hunting assistant that aligns to the PEAK framework.
☆58Jun 1, 2026Updated 2 months ago
Alternatives and similar repositories for PEAK-Assistant
Users that are interested in PEAK-Assistant are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.☆356Updated this week
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆332Updated this week
- Generate realistic synthetic security logs for cybersecurity threat hunting training and research☆204Updated this week
- AI-powered cybersecurity attack flow visualization tool using MITRE ATT&CK☆233Jul 18, 2026Updated 3 weeks ago
- Archive of publicly available threat INTel reports (mostly APT Reports but not limited to).☆11Sep 30, 2018Updated 7 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- MCP to help Defenders Detection Engineer Harder and Smarter☆470Jun 16, 2026Updated last month
- Aggregated ATT&CK technique reporting data. Presented at Splunk GovSummit December 2022☆18Jul 18, 2025Updated last year
- ☆10Sep 12, 2024Updated last year
- A curated collection of DFIR skills and workflows for InfoSec practitioners.☆321May 14, 2026Updated 2 months ago
- Atlas is infrastructure for continual learning in LLM agents.☆16Jan 24, 2026Updated 6 months ago
- This is the repository for AI for SOC short video series☆19Sep 12, 2025Updated 10 months ago
- A Kubernetes Forensic Collection Framework for Azure Kubernetes Service☆44Feb 9, 2026Updated 6 months ago
- The Eventlog Compendium is the go-to resource for understanding Windows Event Logs.☆57Apr 22, 2025Updated last year
- ☆15Mar 12, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆30Jan 13, 2026Updated 6 months ago
- CyberChef update scripts in PowerShell & Bash☆18Apr 22, 2024Updated 2 years ago
- A catalog of services that can be publicly exposed within different cloud providers.☆14Aug 30, 2024Updated last year
- Notes on responding to security breaches relating to Azure AD☆124Mar 14, 2022Updated 4 years ago
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆174Jul 12, 2026Updated 3 weeks ago
- A preconfigured Velociraptor triage collector☆77Jun 29, 2026Updated last month
- A project designed to make the operationalization of open-source cyber threat intelligence more efficient.☆19Updated this week
- Azure Activity Log Axe is a continually developing tool that simplifies the transactional log format provided by Microsoft. The tool leve…☆35Sep 6, 2024Updated last year
- 🛡️ SIGMA Detection Engineering Platform A comprehensive AI-powered detection engineering platform for security teams to explore MITRE AT…☆45Jun 28, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- yara detection rules for hunting with the threathunting-keywords project☆166May 11, 2025Updated last year
- Short deep dive into Threat Hunting on AWS☆19Oct 15, 2023Updated 2 years ago
- A specialized environment for crafting, validating, and testing LimaCharlie detection rules☆15Nov 11, 2025Updated 8 months ago
- Repository of TLP:CLEAR OpenTide Objects that can be shared within the community☆16Jun 22, 2026Updated last month
- A minimal, modular MCP server that equips your AI with practical capabilities for real-world threat hunting workflows.☆17Apr 26, 2026Updated 3 months ago
- CQL Hub is an open repository of detection and hunting queries for CrowdStrike NextGen SIEM and Falcon LogScale. All queries stored here …☆76Jul 29, 2026Updated last week
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆27Jul 27, 2022Updated 4 years ago
- GenAI-STIX2.1-Generator is a tool that leverages Azure OpenAI capabilities to transform threat intelligence reports from unstructured web…☆24Mar 24, 2025Updated last year
- A schema-aware dataset and Claude AI skill for Microsoft Defender XDR Advanced Hunting.☆36May 6, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Documentation and tools to curate Sigma rules for Windows event logs into easier to parse rules.☆16Oct 22, 2025Updated 9 months ago
- Yara rules☆21Mar 27, 2023Updated 3 years ago
- This is a repository to experiment with MCP for security☆51Jan 22, 2025Updated last year
- Share Information about Microsoft Security Products☆115Aug 2, 2026Updated last week
- A repository of my own Sigma detection rules.☆167Nov 25, 2025Updated 8 months ago
- USN Journal full path builder☆70Apr 16, 2026Updated 3 months ago
- CloudGrappler is a purpose-built tool designed for effortless querying of high-fidelity and single-event detections related to well-known…☆267Nov 21, 2025Updated 8 months ago