how to strangle threats
☆61Aug 24, 2026Updated this week
Alternatives and similar repositories for detection-chokepoints
Users that are interested in detection-chokepoints are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Kitsune 🦊 A LangGraph workflow for crafting detections against emerging tradecraft.☆14Apr 20, 2026Updated 4 months ago
- Autonomous, read-only endpoint investigation via MCP. Ask a question about your fleet, get a narrative answer with containment recommenda…☆22Jul 6, 2026Updated last month
- Detection engineering template☆15Jul 24, 2025Updated last year
- Helping defenders learn and validate npm supply-chain detections with safe atomic tests.☆34Oct 30, 2025Updated 9 months ago
- ☆21Jul 13, 2026Updated last month
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- DriverSentinel is a security tool developed in Go that detects malicious and vulnerable drivers on Windows systems by comparing them agai…☆36Jul 28, 2026Updated 3 weeks ago
- Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools…☆179Updated this week
- Generate realistic synthetic security logs for cybersecurity threat hunting training and research☆220Updated this week
- Interactive PowerShell framework for testing WMI, COM, LOLBAS, and persistence techniques☆131Dec 28, 2025Updated 7 months ago
- A schema-aware dataset and Claude AI skill for Microsoft Defender XDR Advanced Hunting.☆36May 6, 2026Updated 3 months ago
- Run TTPs, with AI!☆140Feb 23, 2026Updated 6 months ago
- MCP to help Defenders Detection Engineer Harder and Smarter☆474Jun 16, 2026Updated 2 months ago
- Detection tells you a key is real; geiger tells you whether it's dangerous.☆35Updated this week
- Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨☆74Jun 17, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Public repository for Red Canary Research☆38Oct 29, 2020Updated 5 years ago
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆337Updated this week
- A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concret…☆59Mar 5, 2026Updated 5 months ago
- SecTor - Not-So-Secret Agents: Deploying AI to Optimize Security Operations☆46Oct 15, 2025Updated 10 months ago
- Active Directory Attack Architecture Map Comprehensive Pentest Reference — From Recon to Domain Dominance☆29Feb 17, 2026Updated 6 months ago
- User-mode ETW interception and telemetry manipulation lab for Windows security research.☆44Jun 15, 2026Updated 2 months ago
- A public repository of quality research on cyber attack techniques. This is the backend for the Technique Research Report (TRR) Library.☆30Aug 17, 2026Updated last week
- Create honeypots for cloud environments☆116Oct 6, 2025Updated 10 months ago
- ⚡ AI-powered cybersecurity CLI tool for Kali Linux | Ethical hacking | Penetration testing | Bug bounty☆42May 20, 2026Updated 3 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Living Under the Land on Linux ~ Bsides Belfast/Vienna 2025☆38Nov 22, 2025Updated 9 months ago
- ☆11Dec 17, 2024Updated last year
- Cyber Threat Defense World Modeling☆26May 13, 2026Updated 3 months ago
- Deploy agents easily☆109Feb 6, 2026Updated 6 months ago
- Open-source, self-hosted OSINT investigation platform: turn documents into a live, investigated entity graph. Autonomous agent, graph ana…☆64Jun 15, 2026Updated 2 months ago
- This project is an Ansible Role to execute Atomic Red Team tests against multiple machines by wrapping Invoke-AtomicRedTeam☆28Jul 4, 2024Updated 2 years ago
- Detection Reliability And Precision Efficiency (DRAPE) is an index used to assess detection performance☆36Nov 17, 2025Updated 9 months ago
- Local forensic scanner that extracts credentials from AI tool conversation history. For authorized red team and DLP use only.☆59Updated this week
- The standard Go net.Conn interface using Azure Storage services as the transport layer.☆32Aug 15, 2026Updated last week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- How can you track the hunting techniques you come up with?☆13Sep 3, 2017Updated 8 years ago
- Convert Sigma rules to SIEM queries, directly in your browser.☆122Aug 19, 2026Updated last week
- Indicators of Normality☆11Jul 22, 2022Updated 4 years ago
- For testing or trolling LLM based pentesting frameworks.☆18Feb 18, 2026Updated 6 months ago
- Code canaries to quickly triage hallucinated ('slop') vulnerability reports☆97May 20, 2026Updated 3 months ago
- Inline proxy for software package registries to provide observability and policy controls to installs.☆51Jun 5, 2026Updated 2 months ago
- Cross-platform incident response toolkit. 28 pre-built use cases in a single zero-install binary: triage, threat hunting, memory forensic…☆154Jul 28, 2026Updated 3 weeks ago