Project Awesome project awesome

Cybersecurity Blue Team

Groups of individuals who identify security flaws in information technology systems.

Collection 5.2k stars GitHub

Cloud platform security

DevSecOps

Incident Response tools

Security monitoring

Threat intelligence

DATA 99 updated 7y ago

Credential phish analysis and automation tool that can accept suspected phishing URLs directly or trigger on observed network traffic containing such a URL.

Forager 177 updated 8y ago

Multi-threaded threat intelligence gathering built with Python3 featuring simple text-based configuration and data storage for ease of use and data portability.

GRASSMARLIN

Provides IP network situational awareness of industrial control systems (ICS) and Supervisory Control and Data Acquisition (SCADA) by passively mapping, accounting for, and reporting on your ICS/SCADA network topology and endpoints.

MLSec Combine 658 updated 7y ago

Gather and combine multiple threat intelligence feed sources into one customizable, standardized CSV-based format.

Sigma 10.2k updated 6d ago

Generic signature format for SIEM systems, offering an open signature format that allows you to describe relevant log events in a straightforward manner.

Threat Bus 269 (archived)

Threat intelligence dissemination layer to connect security tools through a distributed publish/subscribe message broker.

ThreatIngestor 907 updated 2y ago

Extendable tool to extract and aggregate IOCs from threat feeds including Twitter, RSS feeds, or other sources.

Viper 1.6k (archived)

Binary analysis and management framework enabling easy organization of malware and exploit samples.

YARA 9.5k updated 1mo ago

Tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples, described as "the pattern matching swiss army knife" for file patterns and signatures.