detection-engineering

Open-source projects categorized as detection-engineering

Top 14 detection-engineering Open-Source Projects

  • Fleet

    Open-source platform for IT, security, and infrastructure teams. (Linux, macOS, Chrome, Windows, cloud, data center) (by fleetdm)

  • Project mention: Osquery: An sqlite3 virtual table exposing operating system data to SQL | news.ycombinator.com | 2024-02-25

    Yo! We're working on the fix. You can track progress here: https://github.com/fleetdm/fleet/issues/17165

  • EVTX-ATTACK-SAMPLES

    Windows Events Attack Samples

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • stratus-red-team

    :cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

  • matano

    Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS

  • Project mention: Cisco Acquires Splunk | news.ycombinator.com | 2023-09-21

    sorry thats https://matano.dev

  • Digital-Forensics-Guide

    Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.

  • Project mention: Most used DFIR tools | /r/cybersecurity | 2023-12-10

    If you're looking to learn on your own, try mikeroyal's digital forensics guide on Github. There's a lot of recommended resources there that'll speed you up. https://github.com/mikeroyal/Digital-Forensics-Guide

  • security_content

    Splunk Security Content

  • Project mention: SIEM content development | /r/SIEM | 2023-12-10

    There's a ton of valuable resources out there when searching for "detection engineering", beyond that, check https://research.splunk.com/ to get an idea of a structured and contextual approach. Beyond that, check Rob van Os Magma use case framework and any blog you can find on https://correlatedsecurity.com (Jurgen Visser). Last but not least, anything "awesome" on github, e.g. https://github.com/fabacab/awesome-cybersecurity-blueteam

  • Open-Source-Security-Guide

    Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • pql

    Pipelined Query Language

  • Project mention: FLaNK 04 March 2024 | dev.to | 2024-03-04
  • awesome-detection-engineering

    Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying malicious or unauthorized activity before it negatively impacts an individual or an organization.

  • Project mention: Detection Engineering - Responsibilities / Career Growth / Compensation | /r/SecurityCareerAdvice | 2023-06-14

    Apologies if unclear, I meant the path towards Detection Engineering! I've immersed myself into awesome-detection-engineering and find different perspectives/gems through newsletters such as 'Detection Engineering' by Zack Allen.

  • ThreatHunting-Keywords

    Awesome list of keywords and artifacts for Threat Hunting sessions

  • Project mention: List of offensive tools keywords for ThreatHunting | /r/cybersecurity | 2023-05-18

    more information here: https://github.com/mthcht/ThreatHunting-Keywords

  • threatest

    Threatest is a CLI and Go framework for end-to-end testing threat detection rules.

  • Purpleteam

    Purpleteam scripts simulation & Detection - trigger events for SOC detections

  • reversinglabs-siem-rules

    A collection of various SIEM rules relating to malware family groups.

  • Project mention: A collection of various SIEM rules relating to malware family groups | /r/purpleteamsec | 2023-07-07
  • Automata

    Automatic detection engineering technical state compliance (by 3CORESec)

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

detection-engineering related posts

Index

What are some of the best open-source detection-engineering projects? This list will help you:

Project Stars
1 Fleet 2,132
2 EVTX-ATTACK-SAMPLES 2,126
3 stratus-red-team 1,621
4 matano 1,355
5 Digital-Forensics-Guide 1,343
6 security_content 1,136
7 Open-Source-Security-Guide 850
8 pql 614
9 awesome-detection-engineering 551
10 ThreatHunting-Keywords 337
11 threatest 304
12 Purpleteam 122
13 reversinglabs-siem-rules 58
14 Automata 48

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com