Skip to main content
buildradar
Sign in
Topic · mitre-attack

mitre-attack

Tracked open-source repos tagged mitre-attack, sorted by stars.

Repos
33
Total stars
115,723
Avg. stars
3,507
Share
0.01%

Topics that frequently appear alongside mitre-attack on the same repo.

Recent risers

Repos created in the last 90 days, tagged mitre-attack.

No new repos tagged with this topic in the last 90 days.

  • 817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0

    32,040+426Star change over the last 7 days
  • atomic-red-team@redcanaryco

    Small and highly portable detection tests based on MITRE's ATT&CK.

    12,479+15Star change over the last 7 days
  • kubescape@kubescape

    Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.

    11,718+15Star change over the last 7 days
  • Tools and Techniques for Red Team / Penetration Testing

    9,680+8Star change over the last 7 days
  • caldera@apache

    Automated Adversary Emulation Platform

    7,235+12Star change over the last 7 days
  • Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.

    3,128+18Star change over the last 7 days
  • sysmon-modular@olafhartong

    A repository of sysmon configuration modules

    3,124+5Star change over the last 7 days
  • fibratus@rabbitstack

    Security sensor for realtime threat detection and protection

    2,536-1Star change over the last 7 days
  • attack-navigator@mitre-attack

    Web app that provides basic navigation and annotation of ATT&CK matrices

    2,451+1Star change over the last 7 days
  • Shuffle@Shuffle

    Shuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing.

    2,423+0Star change over the last 7 days
  • :cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

    2,383+4Star change over the last 7 days
  • AiSOC@beenuar

    Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.

    2,363-22Star change over the last 7 days
  • Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements, analyze recon, research exploits, build detections, audit STIGs, and write reports.

    2,189+17Star change over the last 7 days
  • adversary_emulation_library@center-for-threat-informed-defense

    An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

    2,158+2Star change over the last 7 days
  • Curated resources help you prepare for the CNCF/Linux Foundation CKS 2021 "Kubernetes Certified Security Specialist" Certification exam. Please provide feedback or requests by raising issues, or making a pull request. All feedback for improvements are welcome. thank you.

    2,123+2Star change over the last 7 days
  • A curated knowledge base to build, run and mature a SOC (including CSIRT).

    1,809+0Star change over the last 7 days
  • GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]

    1,594+2Star change over the last 7 days
  • cve-mcp-server@mukul975

    Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan, VirusTotal, and more.

    1,367+136Star change over the last 7 days
  • BLUESPAWN@ION28

    An Active Defense and EDR software to empower Blue Teams

    1,335+0Star change over the last 7 days
  • attackgen@mrwadams

    AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework. The tool generates tailored incident response scenarios based on user-selected threat actor groups and your organisation's details.

    1,239+1Star change over the last 7 days
  • stride-gpt@mrwadams

    An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE methodology.

    1,112+4Star change over the last 7 days
  • Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.

    1,109+3Star change over the last 7 days
  • sentinel-attack@edoardogerosa

    Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK

    1,077+0Star change over the last 7 days
  • ATTACK-Tools@nshalabi

    Utilities for MITRE™ ATT&CK

    1,053+0Star change over the last 7 days
  • KubeHound@DataDog

    Tool for building Kubernetes attack paths

    996+2Star change over the last 7 days
  • attack-flow@center-for-threat-informed-defense

    Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by developing a representation of attack flows, modeling attack flows for a small corpus of incidents, and creating visualization tools to display attack flows.

    771+2Star change over the last 7 days
  • mitreattack-python@mitre-attack

    A python module for working with ATT&CK

    736+0Star change over the last 7 days
  • Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.

    641+0Star change over the last 7 days
  • attack-website@mitre-attack

    MITRE ATT&CK Website

    586+0Star change over the last 7 days
  • tailpipe@turbot

    select * from logs; Tailpipe is an open source SIEM for instant log insights, powered by DuckDB. Analyze millions of events in seconds, right from your terminal.

    580+0Star change over the last 7 days
← Back to topics