kraven-security / python-threat-hunting-toolsLinks
This repository contains various threat hunting tools written in Python and is documented in the series Python Threat Hunting Tools which can be found at Kraven Security - Python Threat Hunting Tools. Feel free to use, expand, and adapt these tools as you learn how to create your own tools to hunt for threats!
☆19Updated 2 years ago
Alternatives and similar repositories for python-threat-hunting-tools
Users that are interested in python-threat-hunting-tools are comparing it to the libraries listed below
Sorting:
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆114Updated last year
- Incident Response documents and tooling☆109Updated 2 months ago
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆125Updated last year
- Cyber Underground General Intelligence Requirements☆95Updated last year
- A project designed to make the operationalization of open-source cyber threat intelligence more efficient.☆15Updated this week
- The Threat Actor Profile Guide for CTI Analysts☆115Updated 2 years ago
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- MISP Playbooks☆219Updated last month
- Import CrowdStrike Threat Intelligence into your instance of MISP☆48Updated 5 months ago
- Advanced Threat Hunting: Ransomware Group☆29Updated 4 months ago
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆88Updated 9 months ago
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆51Updated 6 months ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆49Updated last year
- ☆68Updated this week
- Harness the power of Splunk for your investigations☆143Updated last month
- Sigma detection rules for hunting with the threathunting-keywords project☆56Updated 8 months ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆114Updated last year
- ☆53Updated last year
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆52Updated last year
- A preconfigured Velociraptor triage collector☆56Updated this week
- ☆117Updated 6 months ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆271Updated 8 months ago
- ☆28Updated this week
- MISP to Sentinel integration☆77Updated this week
- ☆99Updated 3 weeks ago
- A repository of my own Sigma detection rules.☆162Updated this week
- An open source platform to support analysts to organise their case and tasks☆110Updated 2 weeks ago
- Resources, tools and utilities about Threat Intelligence☆74Updated 2 years ago
- Cleanup of older MISP events can require some work until now☆27Updated 2 months ago
- The Enhanced MITRE ATT&CK® Coverage Tracker is an Excel tool for SOCs to measure and improve detection coverage of cyber threats. It simp…☆30Updated 2 weeks ago