An open framework for classifying, detecting, and preventing insider threat behaviors.
☆40Sep 4, 2026Updated 3 weeks ago
Alternatives and similar repositories for insider-threat-matrix
Users that are interested in insider-threat-matrix are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Forensic extractor for Claude Code and Claude Cowork local state — macOS/Windows captures☆28Jun 16, 2026Updated 3 months ago
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆21Jul 1, 2023Updated 3 years ago
- Construct triage artifact based on rules☆16Sep 26, 2026Updated last week
- Microsoft-Defender-for-IoT☆14May 26, 2025Updated last year
- Yara rules for malicious javascript files from public repositories or written by me.☆13Nov 12, 2021Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- An AWS CloudTrail exported logs analyzer tool☆21Jul 26, 2026Updated 2 months ago
- EventLogSilencer is a PowerShell script designed for disable Windows Event Logging☆19Oct 28, 2023Updated 2 years ago
- ☆23Jan 28, 2026Updated 8 months ago
- An ongoing & curated collection of awesome software best practices and remediation techniques, libraries and frameworks, E-books and vide…☆50Nov 11, 2022Updated 3 years ago
- ☆30Jan 13, 2026Updated 8 months ago
- SQL, IIS, Oh My...☆23Feb 24, 2025Updated last year
- AD CS exploitation related stuff goes here☆40Mar 23, 2026Updated 6 months ago
- ResearchDev - XDR & SIEM Detection☆66Apr 16, 2025Updated last year
- TOCFL word-list CSV file generator☆18Nov 21, 2024Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 4 years ago
- Follow the trail of breadcrumbs left behind by any user on a computer or mounted disk image.☆31Aug 28, 2025Updated last year
- Super light, super fast, unlimited search idea☆26Aug 3, 2025Updated last year
- MacOS forensic collector for Velociraptor. 70 artefacts covering browsers, communications, user activity, persistence, security, logs, fi…☆17May 26, 2026Updated 4 months ago
- Devnet for the fhEVM reference implementation☆19Sep 26, 2023Updated 3 years ago
- A collection of powershell scripts that are designed to be ran from a Microsoft Defender for Endpoint Live Response terminal, utilizing o…☆12Apr 26, 2023Updated 3 years ago
- CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability☆17May 27, 2024Updated 2 years ago
- ☆11Jan 9, 2026Updated 8 months ago
- Detecting and Responding to Threats using Microsoft 365 Defender, published by Packt☆16Jul 10, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- 🔐 50+ MCP Security Servers for AI-Powered Pentesting | Integrate Nmap, Burp Suite, Nuclei, Shodan, BloodHound, Semgrep, Trivy | Model Co…☆30Jan 27, 2026Updated 8 months ago
- A Shiny Web App tutorial inspecting the COVID-19 (2019-nCoV) epidemic, data from https://github.com/CSSEGISandData/COVID-19/tree/master/c…☆10Apr 18, 2020Updated 6 years ago
- Repository with supporting materials for Invictus Academy/Training☆45Jul 22, 2026Updated 2 months ago
- My solutions for pwn and reversing challenges☆11Mar 18, 2018Updated 8 years ago
- Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools…☆184Aug 22, 2026Updated last month
- Production-ready KQL queries for Microsoft Defender XDR and Microsoft Sentinel. Focused on Threat Hunting, Detection Engineering, and MIT…☆179Updated this week
- ☆11Feb 22, 2022Updated 4 years ago
- A public collection of detections designed to detect threats associated with the Okta WIC Platform.☆39Sep 8, 2026Updated 3 weeks ago
- ZKP2P V2 escrow protocol contracts☆26Updated this week
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Proof-of-concept security demo illustrating how PowerShell can create trusted-looking Windows toast notifications chained together with C…☆18Apr 12, 2026Updated 5 months ago
- Process hunting Toolkit is toolkit capable of hunting down malicious processes on Windows☆14Jan 31, 2025Updated last year
- This directory contains random scripts from threat hunting or malware research☆11Feb 15, 2018Updated 8 years ago
- Community content for LogRhythm Axon. Includes Dashboards, searches, analytics rules, processing policies and more.☆10Jul 26, 2024Updated 2 years ago
- Everything related to YARA☆16Apr 18, 2026Updated 5 months ago
- AI-powered multi-tenant SOC automation agent using LangGraph with Wazuh, Cortex, TheHive & MISP integration☆88Aug 12, 2026Updated last month
- This repository contains various public projects created by the owners of Hybrid Brothers☆21Nov 3, 2023Updated 2 years ago