how to strangle threats
β64Sep 10, 2026Updated this week
Alternatives and similar repositories for detection-chokepoints
Users that are interested in detection-chokepoints are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Kitsune π¦ A LangGraph workflow for crafting detections against emerging tradecraft.β14Apr 20, 2026Updated 4 months ago
- Autonomous, read-only endpoint investigation via MCP. Ask a question about your fleet, get a narrative answer with containment recommendaβ¦β23Jul 6, 2026Updated 2 months ago
- Detection engineering templateβ15Jul 24, 2025Updated last year
- Helping defenders learn and validate npm supply-chain detections with safe atomic tests.β35Oct 30, 2025Updated 10 months ago
- β21Jul 13, 2026Updated 2 months ago
- 1-Click AI Models by DigitalOcean Gradient β’ AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- DriverSentinel is a security tool developed in Go that detects malicious and vulnerable drivers on Windows systems by comparing them agaiβ¦β36Jul 28, 2026Updated last month
- Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation toolsβ¦β182Aug 22, 2026Updated 3 weeks ago
- Interactive PowerShell framework for testing WMI, COM, LOLBAS, and persistence techniquesβ131Dec 28, 2025Updated 8 months ago
- Generate realistic synthetic security logs for cybersecurity threat hunting training and researchβ230Updated this week
- A schema-aware dataset and Claude AI skill for Microsoft Defender XDR Advanced Hunting.β36May 6, 2026Updated 4 months ago
- Run TTPs, with AI!β142Feb 23, 2026Updated 6 months ago
- MCP to help Defenders Detection Engineer Harder and Smarterβ486Jun 16, 2026Updated 2 months ago
- Detection tells you a key is real; geiger tells you whether it's dangerous.β36Updated this week
- Threat feeds designed to extract adversarial TTPs and IOCs, using: β¨AIβ¨β74Jun 17, 2026Updated 2 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits β’ AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Public repository for Red Canary Researchβ38Oct 29, 2020Updated 5 years ago
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters β¦β342Updated this week
- A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concretβ¦β61Mar 5, 2026Updated 6 months ago
- SecTor - Not-So-Secret Agents: Deploying AI to Optimize Security Operationsβ46Oct 15, 2025Updated 10 months ago
- User-mode ETW interception and telemetry manipulation lab for Windows security research.β44Jun 15, 2026Updated 3 months ago
- A public repository of quality research on cyber attack techniques. This is the backend for the Technique Research Report (TRR) Library.β30Sep 1, 2026Updated last week
- Active Directory Attack Architecture Map Comprehensive Pentest Reference β From Recon to Domain Dominanceβ32Aug 27, 2026Updated 2 weeks ago
- Create honeypots for cloud environmentsβ116Oct 6, 2025Updated 11 months ago
- β‘ AI-powered cybersecurity CLI tool for Kali Linux | Ethical hacking | Penetration testing | Bug bountyβ44May 20, 2026Updated 3 months ago
- Managed hosting for WordPress and PHP on Cloudways β’ AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Living Under the Land on Linux ~ Bsides Belfast/Vienna 2025β38Nov 22, 2025Updated 9 months ago
- β11Dec 17, 2024Updated last year
- Cyber Threat Defense World Modelingβ26May 13, 2026Updated 4 months ago
- Deploy agents easilyβ109Feb 6, 2026Updated 7 months ago
- Open-source, self-hosted OSINT investigation platform: turn documents into a live, investigated entity graph. Autonomous agent, graph anaβ¦β68Sep 5, 2026Updated last week
- This project is an Ansible Role to execute Atomic Red Team tests against multiple machines by wrapping Invoke-AtomicRedTeamβ28Jul 4, 2024Updated 2 years ago
- Detection Reliability And Precision Efficiency (DRAPE) is an index used to assess detection performanceβ36Nov 17, 2025Updated 9 months ago
- The standard Go net.Conn interface using Azure Storage services as the transport layer.β32Aug 15, 2026Updated last month
- How can you track the hunting techniques you come up with?β13Sep 3, 2017Updated 9 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer β’ AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Local forensic scanner that extracts credentials from AI tool conversation history. For authorized red team and DLP use only.β59Updated this week
- Convert Sigma rules to SIEM queries, directly in your browser.β123Aug 19, 2026Updated 3 weeks ago
- Indicators of Normalityβ11Jul 22, 2022Updated 4 years ago
- For testing or trolling LLM based pentesting frameworks.β19Feb 18, 2026Updated 6 months ago
- Code canaries to quickly triage hallucinated ('slop') vulnerability reportsβ100May 20, 2026Updated 3 months ago
- Inline proxy for software package registries to provide observability and policy controls to installs.β53Jun 5, 2026Updated 3 months ago
- Cross-platform incident response toolkit. 28 pre-built use cases in a single zero-install binary: triage, threat hunting, memory forensicβ¦β154Jul 28, 2026Updated last month