AI EDR for developer workstations and autonomous agent fleets. Build Swarm Detection & Response platforms with Clawdstrike.
-
Updated
Aug 4, 2026 - TypeScript
AI EDR for developer workstations and autonomous agent fleets. Build Swarm Detection & Response platforms with Clawdstrike.
A cybersecurity game in Azure Data Explorer
Comprehensive SOC Analyst notes covering incident response, threat hunting, SOC workflows, and cybersecurity concepts—perfect for exam prep and skill-building in blue team operations.
Sensor Mappings to ATT&CK is a collection of resources to assist cyber defenders with understanding which sensors and events can help detect real-world adversary behaviors in their environments.
Highly customizable low-interaction experimental honeypot that mimics specific hosts.
Self-hosted PCAP analysis platform with LLM-powered incident triage, signature-based threat detection, and AI-generated incident narratives. Features network change monitoring across captures, deep packet inspection via nDPI, and automated Wireshark filter generation. Runs fully offline with local LLMs (Ollama, LM Studio).
Harnessing AI to Disrupt and Evaluate Security (HADES)
Zenith-Sentry: Production-grade Linux Endpoint Detection and Response (EDR) toolkit with eBPF kernel telemetry, behavioral analysis, MITRE ATT&CK mapping, and automated threat mitigation. Real-time security monitoring for Linux servers and workstations.
CLI-based 802.11 Rogue (Fake) AP & Hidden AP Spotter
This repo is all about Blue teamming and CyberDefenders Write-up for their DFIR challenges
هذا المشروع يحتوي على جميع الدروس والموارد لكورس تعلم الأمن السيبراني من إعداد Coder Shiyar. مناسب للمبتدئين ومن يريدون تحسين مهاراتهم في الأمن السيبراني، اختبار الاختراق، أمان الشبكات، وتقنيات الحماية الأخلاقية.
An Attentive Graph Agent for Topology-Adaptive Cyber Defence
"Dead1ock-h4ck" is an open-source project dedicated to exploring cybersecurity and ethical hacking techniques. The project aims to provide resources and tools for learning about network security, cryptography, and penetration testing.
Production-validated detection queries and hunting artifacts across 9 platforms (KQL, Sigma, Splunk, Athena, PowerShell, Velociraptor, YARA, Suricata, osquery). Each with triggers, false positives, tuning guidance, and validation steps.
OpenMTD - A framework for efficient MTD evaluation
Digital forensic (DFIR) specialist roadmap.
An open-source JSON-Schema validator test suite and command-line tool for OpenC2
This repository provides comprehensive guides, configurations, rules, and practical examples for Snort, the open-source intrusion detection system (IDS). Ideal for cybersecurity professionals and enthusiasts looking to enhance their network security skills.
Hello, this is repository which has solutions for Natas Labs.
I use this repo as a backup of my notes. knowledge is free and meant to be shared. feel free to use it at your own wish :)
Add a description, image, and links to the cyber-defense topic page so that developers can more easily learn about it.
To associate your repository with the cyber-defense topic, visit your repo's landing page and select "manage topics."