Vigil - an ever improving 100% OpenSource AI system for security
☆214Jul 17, 2026Updated this week
Alternatives and similar repositories for vigil
Users that are interested in vigil are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Triage Agent for reducing junior analyst manual activiites☆42May 11, 2026Updated 2 months ago
- A modular, skill-based autonomous Security Operations Center (SOC) agent that monitors OpenSearch/Elasticsearch data, builds RAG-based be…☆254Updated this week
- An Obsidian-Based Second Brain for CyberSecurity Analysts and Professionals☆59Feb 18, 2026Updated 5 months ago
- Automated security investigation tool using Microsoft MCP Servers, GitHub Copilot, Python Modules and custom copilot-instructions.☆230Updated this week
- MCP to help Defenders Detection Engineer Harder and Smarter☆462Jun 16, 2026Updated last month
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Powershell Functions to interact with TheHive-Project☆11Jun 27, 2019Updated 7 years ago
- A production-ready, enterprise-grade MDR framework that transforms chaotic security alerts into structured, actionable intelligence.☆23Feb 14, 2026Updated 5 months ago
- Map MITRE attack to n dimensional embeddings and vise versa☆18May 22, 2025Updated last year
- Run TTPs, with AI!☆140Feb 23, 2026Updated 4 months ago
- A curated collection of DFIR skills and workflows for InfoSec practitioners.☆321May 14, 2026Updated 2 months ago
- Imperial Security Reconnaissance System☆25Feb 10, 2026Updated 5 months ago
- ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.☆334Updated this week
- DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret …☆295Jun 6, 2026Updated last month
- Public Chronicle Detection Rules☆12Apr 25, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆79May 8, 2026Updated 2 months ago
- Lightweight open-core SIEM in Rust — ClickHouse for logs, Postgres for state.☆64Updated this week
- Natural language interface to OpenCTI threat intelligence. Built with Claude Code for $22. Part of Cooper Cyber Coffee.☆29Nov 29, 2025Updated 7 months ago
- HackMap — a local pentest mapping tool with real-time command execution, persistent history per target, visual attack paths, and one-clic…☆48Mar 12, 2026Updated 4 months ago
- Helping defenders learn and validate npm supply-chain detections with safe atomic tests.☆34Oct 30, 2025Updated 8 months ago
- A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concret…☆57Mar 5, 2026Updated 4 months ago
- AI 驱动的 SOC 仿真平台☆165Jan 2, 2026Updated 6 months ago
- Summarize CTI reports with OpenAI☆18Jun 15, 2026Updated last month
- Import and export custom Sysmon configurations using an interactive GUI that lets you build event rules, manage filters, and generate cle…☆31Mar 10, 2026Updated 4 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- SOCAutomators Substack blog companion — threat research, DBIR analysis, and security operations content☆20Jun 3, 2026Updated last month
- 🔥🔥🔥 AI security automation platform. Build visual workflows, deploy autonomous agents, and automate threat detection and response. 80+…☆180Feb 11, 2026Updated 5 months ago
- 🐐 GoatOS - A lightweight Linux distribution focused on Web & API penetration testing. Built on Debian with GNOME, featuring nuclei, http…☆18Dec 26, 2025Updated 6 months ago
- 🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM☆132Apr 27, 2026Updated 2 months ago
- Damn Vulnerable MCP Server Project☆66May 22, 2026Updated last month
- Autonomous SOC analyst agent for SOCfortress CoPilot — auto-investigates alerts, enriches IOCs, and writes back findings using Claude + l…☆89Updated this week
- PowerShell tool to deploy deceptive Active Directory objects, and audit them☆16Jan 7, 2026Updated 6 months ago
- A collection of practical SOC investigation playbooks for common security alerts including brute-force attacks, phishing incidents, suspi…☆20Mar 15, 2026Updated 4 months ago
- Lists of independent cybersecurity blogs covering threat intelligence, purple team, red team, threat hunting, and detection engineering. …☆39May 9, 2026Updated 2 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Agentic SOC Platform: A powerful, flexible, open-source, and agent-centric automated security operations platform (AI SOC)☆956Updated this week
- An automation framework for deploying Microsoft Sentinel environments using pipelines. This project combines infrastructure-as-code (Bice…☆64Updated this week
- Lightweight macOS detection agent built on Santa’s Endpoint Security telemetry.☆113Dec 3, 2025Updated 7 months ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Feb 3, 2022Updated 4 years ago
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆13Jan 24, 2026Updated 5 months ago
- Detection intelligence turbocharged with Al.☆536Mar 3, 2026Updated 4 months ago
- Share Information about Microsoft Security Products☆111Updated this week