mitre-attack
Tracked open-source repos tagged mitre-attack, sorted by stars.
Related topics
Topics that frequently appear alongside mitre-attack on the same repo.
Recent risers
Repos created in the last 90 days, tagged mitre-attack.
No new repos tagged with this topic in the last 90 days.
- #1
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
★ 32,040+426Star change over the last 7 days - #2
Small and highly portable detection tests based on MITRE's ATT&CK.
★ 12,479+15Star change over the last 7 days - #3
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.
★ 11,718+15Star change over the last 7 days - #4
Tools and Techniques for Red Team / Penetration Testing
★ 9,680+8Star change over the last 7 days - #5★ 7,235+12Star change over the last 7 days
- #6
Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
★ 3,128+18Star change over the last 7 days - #7
A repository of sysmon configuration modules
★ 3,124+5Star change over the last 7 days - #8★ 2,536-1Star change over the last 7 days
- #9
Web app that provides basic navigation and annotation of ATT&CK matrices
★ 2,451+1Star change over the last 7 days - #10
Shuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing.
★ 2,423+0Star change over the last 7 days - #11
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
★ 2,383+4Star change over the last 7 days - #12
Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.
★ 2,363-22Star change over the last 7 days - #13
Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements, analyze recon, research exploits, build detections, audit STIGs, and write reports.
★ 2,189+17Star change over the last 7 days - #14
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
★ 2,158+2Star change over the last 7 days - #15
Curated resources help you prepare for the CNCF/Linux Foundation CKS 2021 "Kubernetes Certified Security Specialist" Certification exam. Please provide feedback or requests by raising issues, or making a pull request. All feedback for improvements are welcome. thank you.
★ 2,123+2Star change over the last 7 days - #16
A curated knowledge base to build, run and mature a SOC (including CSIRT).
★ 1,809+0Star change over the last 7 days - #17
GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]
★ 1,594+2Star change over the last 7 days - #18
Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan, VirusTotal, and more.
★ 1,367+136Star change over the last 7 days - #19★ 1,335+0Star change over the last 7 days
- #20
AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework. The tool generates tailored incident response scenarios based on user-selected threat actor groups and your organisation's details.
★ 1,239+1Star change over the last 7 days - #21
An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE methodology.
★ 1,112+4Star change over the last 7 days - #22
Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.
★ 1,109+3Star change over the last 7 days - #23
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
★ 1,077+0Star change over the last 7 days - #24
Utilities for MITRE™ ATT&CK
★ 1,053+0Star change over the last 7 days - #25★ 996+2Star change over the last 7 days
- #26
Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by developing a representation of attack flows, modeling attack flows for a small corpus of incidents, and creating visualization tools to display attack flows.
★ 771+2Star change over the last 7 days - #27
A python module for working with ATT&CK
★ 736+0Star change over the last 7 days - #28
Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.
★ 641+0Star change over the last 7 days - #29
MITRE ATT&CK Website
★ 586+0Star change over the last 7 days - #30
select * from logs; Tailpipe is an open source SIEM for instant log insights, powered by DuckDB. Analyze millions of events in seconds, right from your terminal.
★ 580+0Star change over the last 7 days