GitHub repo leaderboard by stars, growth rate and activity.
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation
IntelOwl: manage your Threat Intelligence at scale
Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, IPInfo, Shodan, AbuseIPDB, GreyNoise, URLScan.io, Whois/RDAP, NIST, and VulnCheck. Supports LLM enrichment, IOC extraction, YARA scanning, and Android analysis.
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Interesting APT Report Collection And Some Special IOCs
Repositório criado com intuito de reunir informações, fontes(websites/portais) e tricks de OSINT dentro do contexto Brasil.
A curated knowledge base to build, run and mature a SOC (including CSIRT).
| # | Repo | Language | Stars | 30-day trend | Last updated |
|---|---|---|---|---|---|
| 1 | 817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0 | Python | 32,526 | last pushed 2 weeks ago | |
| 2 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community. | C | 6,624 | last pushed 3 days ago | |
| 3 | MISP (core software) - Open Source Threat Intelligence and Sharing Platform | PHP | 6,516 | last pushed Yesterday | |
| 4 | Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation | Python | 5,733 | last pushed 1 year ago | |
| 5 | IntelOwl: manage your Threat Intelligence at scale | Python | 4,705 | last pushed 3 days ago | |
| 6 | Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, IPInfo, Shodan, AbuseIPDB, GreyNoise, URLScan.io, Whois/RDAP, NIST, and VulnCheck. Supports LLM enrichment, IOC extraction, YARA scanning, and Android analysis. | Python | 4,083 | last pushed 5 weeks ago | |
| 7 | Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs. | Rust | 3,339 | last pushed 6 days ago | |
| 8 | Interesting APT Report Collection And Some Special IOCs | Python | 3,091 | last pushed 3 days ago | |
| 9 | Repositório criado com intuito de reunir informações, fontes(websites/portais) e tricks de OSINT dentro do contexto Brasil. | Python | 2,712 | last pushed 3 weeks ago | |
| 10 | A curated knowledge base to build, run and mature a SOC (including CSIRT). | — | 1,862 | last pushed 2 weeks ago |
All · 11,474