A scalable file analysis and data generation platform that allows users to easily orchestrate arbitrary docker/vm/shell tools at scale.
☆1,020Jul 7, 2026Updated last month
Alternatives and similar repositories for thorium
Users that are interested in thorium are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Playbook-NG is a stateless web-based application used to match incident findings with countermeasures for adversary containment and evict…☆163Updated this week
- A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.☆461Apr 29, 2026Updated 3 months ago
- UAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It …☆1,437Updated this week
- A curated collection of DFIR skills and workflows for InfoSec practitioners.☆321May 14, 2026Updated 3 months ago
- Automation to assess the state of your M365 tenant against CISA's baselines☆2,649Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV outp…☆334Feb 26, 2026Updated 5 months ago
- A Kubernetes Forensic Collection Framework for Azure Kubernetes Service☆44Feb 9, 2026Updated 6 months ago
- An index of publicly available and open-source threat detection rulesets.☆138Apr 17, 2025Updated last year
- Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.☆3,321Updated this week
- Digging Deeper....☆4,195Updated this week
- Generate realistic synthetic security logs for cybersecurity threat hunting training and research☆219Updated this week
- CRADLE is a collaborative platform for Cyber Threat Intelligence analysts. It streamlines threat investigations with integrated note-taki…☆344May 18, 2026Updated 3 months ago
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,642Updated this week
- Save toil in security operations with: Detection & Intelligence Analysis for New Alerts (D.I.A.N.A. )☆224Sep 4, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Main Sigma Rule Repository☆10,929Updated this week
- Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-t…☆1,441May 22, 2026Updated 3 months ago
- Threat-hunting tool for Linux☆1,084Updated this week
- A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the …☆1,898Nov 3, 2024Updated last year
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆674Jul 6, 2026Updated last month
- LLM Agent Skill for YARA rule authoring and review☆59Feb 8, 2026Updated 6 months ago
- A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.☆839Jun 29, 2026Updated last month
- MCP to help Defenders Detection Engineer Harder and Smarter☆471Jun 16, 2026Updated 2 months ago
- Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive an…☆1,165Updated this week
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ☆159Mar 31, 2026Updated 4 months ago
- Repository where I hold random detection and threat hunting queries that I come up with based on different sources of information (or eve…☆289Jun 23, 2026Updated 2 months ago
- A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.☆975May 6, 2026Updated 3 months ago
- Rust Library Recognition Project for Rust Malware by the MSTIC-MIRAGE Team☆381Aug 10, 2026Updated 2 weeks ago
- Small and highly portable detection tests based on MITRE's ATT&CK.☆12,443Updated this week
- This project aims to compare and evaluate the telemetry of various EDR products.☆1,976Aug 12, 2026Updated last week
- A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes.☆276Sep 23, 2025Updated 11 months ago
- Segugio allows the execution and tracking of critical steps in the malware detonation process, from clicking on the first stage to extrac…☆151Sep 21, 2024Updated last year
- A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat in…☆584Aug 14, 2026Updated last week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Python implementation of the CaRT library for (un)inerting files.☆53Feb 10, 2025Updated last year
- Malware Configuration And Payload Extraction☆3,441Updated this week
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆2,493Updated this week
- Your Browser-based EVTX Companion☆123Jul 21, 2026Updated last month
- LotL RMM☆388Updated this week
- AssemblyLine 4: File triage and malware analysis☆528Updated this week
- The MAGIC tool is a wrapper around the Microsoft Graph Python SDK, designed to download incident response-relevant data from M365 environ…☆35Apr 13, 2026Updated 4 months ago