kraven-security / python-threat-hunting-toolsLinks
This repository contains various threat hunting tools written in Python and is documented in the series Python Threat Hunting Tools which can be found at Kraven Security - Python Threat Hunting Tools. Feel free to use, expand, and adapt these tools as you learn how to create your own tools to hunt for threats!
☆15Updated last year
Alternatives and similar repositories for python-threat-hunting-tools
Users that are interested in python-threat-hunting-tools are comparing it to the libraries listed below
Sorting:
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆260Updated 3 months ago
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆265Updated this week
- Online resources related to SOC Analysts. Incident investigation reference material, blogs, newsletters, good reads, books, trainings, po…☆19Updated this week
- Open Source Security Operations Center Documentation☆188Updated 2 weeks ago
- An analytical challenge created to test junior analysts looking to try performing proactive and reactive cyber threat intelligence.☆199Updated last year
- MISP Playbooks☆206Updated last month
- Tools and Techniques for Blue Team / Incident Response☆23Updated 2 years ago
- MISP to Sentinel integration☆68Updated last month
- Harness the power of Splunk for your investigations☆116Updated 3 weeks ago
- Tools for simulating threats☆188Updated last year
- Windows Malware Investigation Scripts & Docs☆83Updated 8 months ago
- Config files for my GitHub profile.☆14Updated 2 years ago
- A production ready Dockered MISP☆255Updated last week
- LotL RMM☆218Updated 3 weeks ago
- ☆9Updated last year
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆146Updated last month
- Repository for sharing examples of our artifacts data and for use in new analyst recruitment.☆101Updated 2 months ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆97Updated 8 months ago
- Incident Response documents and tooling☆74Updated last year
- Some important DFIR Resources☆83Updated 2 years ago
- Finding ClickFix and FakeCAPTCHA like it's 1999☆41Updated this week
- SentinelOne STAR Rules☆63Updated 5 months ago
- A repository to share publicly available Velociraptor detection content☆184Updated this week
- 🏴☠️💰 Another Ransomware gang tracker☆221Updated this week
- A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat in…☆325Updated 2 weeks ago
- ☆108Updated last month
- ☆51Updated last year
- A collection of companies that disclose adversary TTPs after they have been breached☆244Updated last year
- A project designed to make the operationalization of open-source cyber threat intelligence more efficient.☆11Updated 2 weeks ago
- Pipeline that allows sending forensic artifacts to OpenRelik for automatic processing☆30Updated last month