Showing 33 of 33 projects
A SQL-powered framework for instrumenting, monitoring, and analyzing operating systems across Linux, macOS, and Windows.
A SQL-powered framework for instrumenting, monitoring, and analyzing operating systems across Linux, macOS, and Windows.
A community-driven open-source project that structures threat hunting workflows using MITRE ATT&CK, Jupyter notebooks, and AI-augmented planning.
An open-source threat hunting platform with advanced analytics capabilities built on ELK stack, Apache Spark, and Jupyter notebooks.
A collection of ready-to-use KQL queries for threat hunting, detection, and analytics in Microsoft Defender for Endpoint and Azure Sentinel.
An open source, serverless security data lake for AWS that normalizes logs, enables detection-as-code, and supports petabyte-scale threat hunting.
An open-source repository of security detections, analytic stories, and response playbooks mapped to MITRE ATT&CK for Splunk Enterprise Security.
A curated list of resources, tools, and frameworks for detection engineering in cybersecurity.
A centralized platform for security monitoring and analysis, integrating big data technologies for log aggregation, threat detection, and behavioral analytics.
A collection of IPython notebooks demonstrating data analysis and machine learning techniques on security datasets.
A data pipeline engine for security teams to collect, transform, enrich, and route telemetry data at scale.
An asynchronous forensic data presentation framework for incident response, built on Elasticsearch.
An open-source framework for detecting command and control communication through network traffic analysis using Zeek logs.
An open-source security analytics platform that integrates big data technologies for centralized security monitoring, threat detection, and investigation.
A lightweight investigation notebook for security analysts to document and track threat intelligence.
A web-based platform for organizing, automating, and analyzing password cracking tasks using Hashcat.
A community-driven collection of pre-built security analytics queries and rules for auditing and threat detection in Google Cloud.
Open-source platform for network security analytics using flow and packet analysis to detect unknown threats at cloud scale.
An open-source big data security analytics tool that analyzes network packet capture (pcap) files using Apache Pig.
A collection of Splunk SPL queries and prototypes for threat hunting and detection engineering.
A tool for data visualization and statistical analysis of threat intelligence indicator feeds to measure their quality and effectiveness.
A scalable malware processing and analytics platform built on Hadoop Pig for binary data extraction and analysis.
An open-source repository of cybersecurity detection rules and threat identifiers for security teams to enhance threat detection capabilities.
An open-source framework for developing large-scale anomaly detection models using Apache Spark.
Kibana 3 dashboard templates for visualizing Suricata IDS/IPS logs in Logstash/ELK stack.
Jupyter notebooks and Python tools for threat hunting and data exploration with Suricata network security data.
An online repository of Exabeam's security detection content, including data sources, use cases, and rules based on the Common Information Model 2.0.
A curated collection of resources for Splunk Enterprise Security, including documentation, training, and integration tools.
A modern web-based management system for Suricata IDS/IPS, featuring advanced analytics and visualization capabilities.
A command-line map-reduce tool for analyzing and visualizing SSH Cowrie honeypot logs over time.
A visualization application for analyzing and displaying hpfeeds honeypot log data in graphical form.
A Splunk app that clusters security events from hpfeeds channels and visualizes them with D3.js parallel coordinates graphs.
A PHP-based web interface for visualizing attack statistics from the Shockpot SSH honeypot.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.