A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
-
Updated
Jan 12, 2026 - Python
A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
The Hunting ELK
Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Sample queries for Advanced hunting in Microsoft 365 Defender
Hunting queries and detections
Atomic Purple Team Framework and Lifecycle
Microsoft Sentinel SOC Operations
Graph Visualization for windows event logs
Collecting & Hunting for IOCs with gusto and style
KQL Queries. Microsoft Defender, Microsoft Sentinel
Pyromid For Hack and Cracking Private Key and Address Bitcoin Wallet From Mnemonic [Words - Passphrase]
yara detection rules for hunting with the threathunting-keywords project
Bitcoin Crack and Hunting Private Key With Mnemonic [HACK] Passphrase 12-24 words and check value of address (transaction & balance)
Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.
Add a description, image, and links to the hunting topic page so that developers can more easily learn about it.
To associate your repository with the hunting topic, visit your repo's landing page and select "manage topics."