threat-detection
Here are 405 public repositories matching this topic...
Language:All
Sort:Most stars
✨ A curated list of awesome threat detection and hunting resources 🕵️♂️
- Updated
Jul 15, 2024
- Updated
Dec 17, 2025 - Python
☁️ ⚡ Granular, Actionable Adversary Emulation for the Cloud
- Updated
Dec 11, 2025 - Go
Proactive, Open source API security → API discovery, API Security Posture, Testing in CI/CD, Test Library with 1000+ Tests, Add custom tests, Sensitive data exposure
- Updated
Dec 17, 2025 - Java
Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying malicious or unauthorized activity before it negatively impacts an individual or an organization.
- Updated
Nov 18, 2025
Watcher - Open Source AI-powered Cyber Threat Intelligence & Hunting Platform. Developed with Django & React JS.
- Updated
Dec 17, 2025 - JavaScript
Threat-hunting tool for Linux
- Updated
Nov 20, 2025 - Rust
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
- Updated
Oct 4, 2025 - Jupyter Notebook
A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).
- Updated
Aug 28, 2025
Open source platform for cyber security analysts with many features for threat intelligence and detection engineering.
- Updated
Aug 17, 2025 - JavaScript
select * from logs; Tailpipe is an open source SIEM for instant log insights, powered by DuckDB. Analyze millions of events in seconds, right from your terminal.
- Updated
Dec 15, 2025 - Go
Enterprise-ready SIEM, SOAR and Compliance powered by real-time correlation and threat intelligence.
- Updated
Dec 17, 2025 - TypeScript
A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.
- Updated
Oct 1, 2024 - Go
Community Security Analytics provides a set of community-driven audit & threat queries for Google Cloud
- Updated
Jun 12, 2024 - Python
A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework
- Updated
Nov 3, 2020 - PowerShell
Threatest is a CLI and Go framework for end-to-end testing threat detection rules.
- Updated
Apr 29, 2025 - Go
🔥 一个集成多源威胁情报的聚合平台,为安全研究人员和运维团队提供实时威胁情报查询和播报服务;集成阿里云WAF主动拦截威胁IP,钓鱼邮件实时监测,集成AI等多项常用安全类工具🔧
- Updated
Nov 28, 2025 - Vue
pretrained BERT model for cyber security text, learned CyberSecurity Knowledge
- Updated
Apr 28, 2023 - Python
A starter pack of resources to help you get started in Detection Engineering.
- Updated
Aug 25, 2025
Bypass 403
- Updated
Feb 15, 2025 - Jupyter Notebook
Improve this page
Add a description, image, and links to thethreat-detection topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with thethreat-detection topic, visit your repo's landing page and select "manage topics."