
teler
Real-time HTTP Intrusion Detection
Log parsing, SIEM, centralized logging, forensic timeline, and security event correlation tools.

RedEye is a visual analytic tool supporting Red & Blue Team operations

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.


Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…


Detect Tactics, Techniques & Combat Threats

A list of cyber-chef recipes and curated links

Automated IP ban service that detects failed login attempts from event logs and files, blocking attackers on Windows and Linux via firewall…

DEPRECATED - MozDef: Mozilla Enterprise Defense Platform

Microsoft Threat Intelligence Security Tools

This project aims to compare and evaluate the telemetry of various EDR products.

Best Practice Auditd Configuration

VirusTotal Wanna Be - Now with 100% more Hipster

Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation.…

A curated list of awesome Security Hardening techniques for Windows.


Curated collection of Microsoft Sentinel KQL queries and tutorials for hunting threats, analyzing Azure AD sign-in logs, detecting anomalies, and…