Built-in Panther detection rules and policies
☆439Mar 9, 2026Updated this week
Alternatives and similar repositories for panther-analysis
Users that are interested in panther-analysis are comparing it to the libraries listed below
Sorting:
- Command line tool for working with Panther rules and policies☆48Updated this week
- Collection of example YARA-L rules for use within Google Security Operations☆473Dec 5, 2025Updated 3 months ago
- Cloud security tutorials and best practices☆38Mar 20, 2023Updated 2 years ago
- ☆2,513Updated this week
- [DEPRECATED] 🐯 Composable react primitives for building UI dashboards☆21Jan 17, 2023Updated 3 years ago
- Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation o…☆1,148Dec 19, 2025Updated 2 months ago
- Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS☆1,658Jan 8, 2025Updated last year
- Splunk Security Content☆1,581Updated this week
- Threatest is a CLI and Go framework for end-to-end testing threat detection rules.☆339Updated this week
- ☆375Feb 23, 2024Updated 2 years ago
- pocket guide for core detection engineering concepts☆31May 8, 2023Updated 2 years ago
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆60Mar 12, 2022Updated 3 years ago
- Granular, Actionable Adversary Emulation for the Cloud☆2,272Updated this week
- ✨ A compilation of suggested tools/services for each component in a detection and response pipeline, along with real-world examples. The …☆289Feb 5, 2024Updated 2 years ago
- A framework for developing alerting and detection strategies for incident response.☆845Sep 8, 2025Updated 6 months ago
- Automated Attack Simulation in the Cloud, complete with detection use cases.☆605Nov 28, 2024Updated last year
- Main Sigma Rule Repository☆10,156Mar 2, 2026Updated last week
- A knowledge base of actionable Incident Response techniques☆662May 31, 2022Updated 3 years ago
- ☆190Updated this week
- Mapping the MITRE ATT&CK Matrix with Osquery☆806May 11, 2023Updated 2 years ago
- Hunting queries and detections☆884Oct 30, 2025Updated 4 months ago
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆174Feb 22, 2026Updated 2 weeks ago
- Detect Tactics, Techniques & Combat Threats☆2,268Jan 21, 2026Updated last month
- Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).☆803Jan 14, 2026Updated last month
- Sublime rules for email attack detection, prevention, and threat hunting.☆348Updated this week
- Convert cloudtrail data to MITRE ATT&CK Sightings☆82Jul 25, 2022Updated 3 years ago
- Open Source Security Events Metadata (OSSEM)☆1,288Feb 27, 2023Updated 3 years ago
- Production-ready detection & response queries for osquery☆601Aug 13, 2025Updated 6 months ago
- Anvilogic Forge☆116Sep 18, 2025Updated 5 months ago
- A repository of my own Sigma detection rules.☆163Nov 25, 2025Updated 3 months ago
- OCSF Schema☆790Feb 27, 2026Updated last week
- A repository of curated datasets from various attacks☆729Mar 2, 2026Updated last week
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,492Jan 12, 2026Updated last month
- Dettectinator - The Python library to your DeTT&CT YAML files.☆118Jan 22, 2026Updated last month
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆208Jul 21, 2022Updated 3 years ago
- Actionable analytics designed to combat threats☆1,005May 25, 2022Updated 3 years ago
- Threat Hunting & Incident Investigation with Osquery☆216Mar 30, 2022Updated 3 years ago
- Harness the security superpowers of your cloud asset inventory☆11Sep 22, 2024Updated last year
- 🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is k…☆386Apr 3, 2024Updated last year