All tags
Catalogue tag

#threat-hunting

Every repository in the public record carrying this tag — from its GitHub topics or the keywords its package registries publish. Health is measured under the same versioned methodology as the rest of the record.

13 records
Tagged “threat-hunting”Ranked by health index
Packagist · PyPI
97Exceptionalhealth index
MISP/MISP
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
PHP · JavaScript★ 6,490Aug 28, 2026
AGPL-3.0Aug 28, 2026 · metrics 2.10.0
Go
90Excellenthealth index
cynative/cynative
Open-source framework for security agents with live, read-only access to your infrastructure. Audit AWS, GCP, Azure, Kubernetes, GitHub and GitLab as one system for privilege escalation, public exposure, leaked credentials and more, with agents you write in one markdown file.
Go · Shell★ 197Sep 5, 2026
Apache-2.0Sep 5, 2026 · metrics 2.10.0
Go · Maven · npm
86Excellenthealth index
utmstack/UTMStack
Enterprise-ready SIEM, SOAR and Compliance powered by real-time correlation and threat intelligence.
TypeScript · Java · HTML★ 580Jul 30, 2026
AGPL-3.0Jul 30, 2026 · metrics 2.10.0
PyPI
81Excellenthealth index
depalmar/ai_for_the_win
Build AI-powered security tools. 50+ hands-on labs covering ML, LLMs, RAG, threat detection, DFIR, and red teaming. Includes Colab notebooks, Docker environment, and CTF challenges.
Python · Jupyter Notebook★ 157Aug 4, 2026
Custom licenseAug 4, 2026 · metrics 2.10.0
crates.io
78Goodhealth index
SecurityRonin/forensicnomicon
DFIR artifact catalog (6,554 artifacts, LOL/LOFL binaries, abusable sites) plus the normalized report vocabulary the SecurityRonin analyzer fleet shares — offline Rust library + 4n6query CLI
Rust★ 4↓ 11.7K/moAug 22, 2026
Apache-2.0Aug 22, 2026 · metrics 2.10.0
crates.io · npm
77Goodhealth index
backbay-labs/clawdstrike
AI EDR for developer workstations and autonomous agent fleets. Build Swarm Detection & Response platforms with Clawdstrike.
TypeScript · Rust★ 285Aug 4, 2026
Apache-2.0Aug 4, 2026 · metrics 2.10.0
PyPI
77Goodhealth index
mentat-is/gulp
g(ULP) core backend and plugins
Python★ 67↓ 836/moJul 17, 2026
Custom licenseJul 17, 2026 · metrics 2.10.0
crates.io
69Goodhealth index
WithSecureLabs/chainsaw
Rapidly Search and Hunt through Windows Forensic Artefacts
Rust★ 3,600↓ 64/moJul 17, 2026
GPL-3.0Jul 17, 2026 · metrics 2.10.0
69Goodhealth index
mukul975/Anthropic-Cybersecurity-Skills
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
Python★ 27.3KAug 5, 2026
Apache-2.0Aug 5, 2026 · metrics 2.10.0
63Moderatehealth index
chainguard-dev/osquery-defense-kit
Production-ready detection & response queries for osquery
Makefile★ 609Jul 18, 2026
Apache-2.0Jul 18, 2026 · metrics 2.10.0
Go
48Weakhealth index
ridgelinecyberdefence/vanguard
Cross-platform incident response toolkit. 28 pre-built use cases in a single zero-install binary: triage, threat hunting, memory forensics, disk collection, remote operations, and Velociraptor management. Works air-gapped, with automated timeline generation.
Go · HTML★ 150Jul 20, 2026
MITJul 20, 2026 · metrics 2.10.0
PyPI
20At Riskhealth index
RoomaSec/RmEye
戎码之眼是一个window上的基于att&ck模型的威胁监控工具.有效检测常见的未知威胁与已知威胁.防守方的利剑
Python · Vue★ 532Aug 4, 2026
Apache-2.0Aug 4, 2026 · metrics 2.10.0
20At Riskhealth index
mthcht/ThreatHunting-Keywords
Awesome list of keywords and artifacts for Threat Hunting sessions
PowerShell · HTML · Python★ 669Aug 4, 2026
No licenseAug 4, 2026 · metrics 2.10.0