A community event for security researchers to share their favorite notebooks
☆108Feb 15, 2024Updated 2 years ago
Alternatives and similar repositories for infosec-jupyterthon
Users that are interested in infosec-jupyterthon are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The Infosec Community Definitive Guide to Jupyter Notebooks☆134Oct 17, 2020Updated 5 years ago
- Place for resources used during the Mordor Detection hackathon event featuring APT29 ATT&CK evals datasets☆145Oct 12, 2020Updated 5 years ago
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆70Dec 2, 2022Updated 3 years ago
- Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).☆813Jan 14, 2026Updated 4 months ago
- Repository containing Jupyter Notebooks for working with OSQuery tables and data☆17May 8, 2020Updated 6 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Jan 29, 2020Updated 6 years ago
- ☆17Aug 27, 2022Updated 3 years ago
- MAL-CL (Malicious Command-Line)☆325Jan 10, 2023Updated 3 years ago
- Threat Box Assessment Tool☆19Mar 5, 2026Updated 3 months ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆210Jul 21, 2022Updated 3 years ago
- Collection of Jupyter Notebooks by @fr0gger_☆197May 11, 2026Updated 3 weeks ago
- Microsoft Threat Intelligence Security Tools☆1,970Updated this week
- MSTIC Notebook Components☆35Sep 4, 2025Updated 9 months ago
- DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.☆572Dec 12, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆15Dec 3, 2022Updated 3 years ago
- Re-play Security Events☆1,762Mar 20, 2024Updated 2 years ago
- Building environments to replicate small networks and deploy applications☆334Jan 9, 2026Updated 5 months ago
- Actionable analytics designed to combat threats☆1,010May 25, 2022Updated 4 years ago
- Extensions for Zeek's Intelligence Framework.☆11Mar 1, 2022Updated 4 years ago
- Go implementation of the Community ID flow hashing standard☆22Apr 17, 2025Updated last year
- Microsoft Sentinel2Go is an open source project developed to expedite the deployment of a Microsoft Sentinel research lab.☆593Jan 22, 2025Updated last year
- Hakabana monitoring tool using Haka, ElastcSearch and Kibana☆20Sep 24, 2014Updated 11 years ago
- Open Source Security Events Metadata (OSSEM)☆1,298Feb 27, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Windows Events Attack Samples☆2,567Jan 24, 2023Updated 3 years ago
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆118Nov 28, 2023Updated 2 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆91Mar 11, 2026Updated 2 months ago
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,579Jan 12, 2026Updated 4 months ago
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆154Apr 25, 2022Updated 4 years ago
- ☆35Jun 22, 2021Updated 4 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆108May 11, 2026Updated 3 weeks ago
- A collection of notebooks built for defensive and offensive operations.☆77Oct 13, 2020Updated 5 years ago
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆1,071Oct 5, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Understand adversary tradecraft and improve detection strategies☆715Mar 9, 2023Updated 3 years ago
- An informational repo about hunting for adversaries in your IT environment.☆1,872Nov 17, 2021Updated 4 years ago
- Meeting notes☆14Apr 5, 2016Updated 10 years ago
- A Python library to help with some common threat hunting data analysis operations☆142Apr 23, 2023Updated 3 years ago
- Zeek package to generate a SMB client fingerprint☆27May 5, 2020Updated 6 years ago
- A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data int…☆2,504May 9, 2026Updated last month
- Run Sigma detection rules on logs from the new MacOS EndpointSecurity Framework☆22Jan 22, 2021Updated 5 years ago