threat-detection
Tracked open-source repos tagged threat-detection, sorted by stars.
Related topics
Topics that frequently appear alongside threat-detection on the same repo.
Recent risers
Repos created in the last 90 days, tagged threat-detection.
No new repos tagged with this topic in the last 90 days.
- #1
✨ A curated list of awesome threat detection and hunting resources 🕵️♂️
★ 4,717+6Star change over the last 7 days - #2★ 2,698+2Star change over the last 7 days
- #3★ 2,536-1Star change over the last 7 days
- #4
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
★ 2,383+4Star change over the last 7 days - #5
Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.
★ 2,363-22Star change over the last 7 days - #6
A curated knowledge base to build, run and mature a SOC (including CSIRT).
★ 1,809+0Star change over the last 7 days - #7
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.
★ 1,527+21Star change over the last 7 days - #8
Watcher - Open Source AI-powered Cyber Threat Intelligence & Hunting Platform. Developed with Django & React JS.
★ 1,373+2Star change over the last 7 days - #9
Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying malicious or unauthorized activity before it negatively impacts an individual or an organization.
★ 1,333+0Star change over the last 7 days - #10★ 1,085+1Star change over the last 7 days
- #11
Open source platform for cyber security analysts with many features for threat intelligence and detection engineering.
★ 939+2Star change over the last 7 days - #12
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
★ 825+0Star change over the last 7 days - #13
A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).
★ 795+0Star change over the last 7 days - #14
Enterprise-ready SIEM, SOAR and Compliance powered by real-time correlation and threat intelligence.
★ 581+1Star change over the last 7 days - #15
select * from logs; Tailpipe is an open source SIEM for instant log insights, powered by DuckDB. Analyze millions of events in seconds, right from your terminal.
★ 580+0Star change over the last 7 days - #16
Open-source runtime AI agent security tool - monitors and controls AI agents, catching malicious tool use, prompt injection, and policy drift in real time, before the agent acts.
★ 560+9Star change over the last 7 days