Skip to content
61

Awesome Threat Detection and Hunting

✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️

4.7k stars762 forks276 entriesLast push Jan 5, 2026 (8 months ago)License none

This page lists names, links and short descriptions. The original list on GitHub is the source and belongs to its authors.

Tools

NRD-db

Automatically fetches and stores newly registered domains in a Redis database.

MITRE ATT&CK Navigator

(source code) - The ATT&CK Navigator is designed to provide basic navigation and annotation of ATT&CK matrices, something that people are already doing today in tools like Excel.

HELK

A Hunting ELK (Elasticsearch, Logstash, Kibana) with advanced analytic capabilities.

In 4 lists

DetectionLab

Vagrant & Packer scripts to build a lab environment complete with security tooling and logging best practices.

In 3 lists

Revoke-Obfuscation

PowerShell Obfuscation Detection Framework.

Invoke-ATTACKAPI

A PowerShell script to interact with the MITRE ATT&CK Framework via its own API.

Unfetter

A reference implementation provides a framework for collecting events (process creation, network connections, Window Event Logs, etc.) from a client machine and performing CAR analytics to detect potential adversary activity.

Flare

An analytical framework for network traffic and behavioral analytics.

RedHunt-OS

A Virtual Machine for Adversary Emulation and Threat Hunting. RedHunt aims to be a one stop shop for all your threat emulation and threat hunting needs by integrating attacker's arsenal as well as defender's toolkit to actively identify the threats in your environment.

In 4 lists

Oriana

Lateral movement and threat hunting tool for Windows environments built on Django comes Docker ready.

Bro-Osquery

Bro integration with osquery

Brosquery

A module for osquery to load Bro logs into tables

DeepBlueCLI

A PowerShell Module for Hunt Teaming via Windows Event Logs

In 3 lists

Uncoder

An online translator for SIEM saved searches, filters, queries, API requests, correlation and Sigma rules

In 2 lists

CimSweep

A suite of CIM/WMI-based tools that enable the ability to perform incident response and hunting operations remotely across all versions of Windows

In 4 lists

Dispatch

An open-source crisis management orchestration framework

In 2 lists

EQL

Event Query Language

EQLLib

The Event Query Language Analytics Library (eqllib) is a library of event based analytics, written in EQL to detect adversary behaviors identified in MITRE ATT&CK™.

BZAR

(Bro/Zeek ATT&CK-based Analytics and Reporting) - A set of Zeek scripts to detect ATT&CK techniques

Security Onion

An open-source Linux distribution for threat hunting, security monitoring, and log management. It includes ELK, Snort, Suricata, Zeek, Wazuh, Sguil, and many other security tools

In 2 lists

Varna

A quick & cheap AWS CloudTrail Monitoring with Event Query Language (EQL)

BinaryAlert

Serverless, real-time & retroactive malware detection

In 3 lists

hollows_hunter

Scans all running processes, recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).

In 4 lists

ThreatHunting

A Splunk app mapped to MITRE ATT&CK to guide your threat hunts

Sentinel Attack

A repository of Azure Sentinel alerts and hunting queries leveraging sysmon and the MITRE ATT&CK framework

Brim

A desktop application to efficiently search large packet captures and Zeek logs

Capa

An open-source tool to identify capabilities in executable files.

In 2 lists

certgrep

A fast Certificate Transparency Log regex domain lookup tool.

In 3 lists

Have I Been Squatted

A fast domain typosquatting detection tool.

In 3 lists

Intel Owl

An Open Source Intelligence, or OSINT solution to get threat intelligence data about a specific file, an IP or a domain from a single API at scale.

In 4 listsDetails

YARA

The pattern matching swiss knife

In 3 lists

Splunk Security Content

Splunk-curated detection content that can easily be used accross many SIEMs (see Uncoder Rule Converter.)

In 2 lists

Threat Bus

Threat intelligence dissemination layer to connect security tools through a distributed publish/subscribe message broker.

In 2 lists

VAST

A network telemetry engine for data-driven security investigations.

In 4 lists

zeek2es

An open source tool to convert Zeek logs to Elastic/OpenSearch. You can also output pure JSON from Zeek's TSV logs!

In 2 lists

LogSlash

A standard for reducing log volume without sacrificing analytical capability.

SOC-Multitool

A powerful and user-friendly browser extension that streamlines investigations for security professionals.

In 2 lists

Zeek Analysis Tools (ZAT)

Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark.

ProcMon for Linux

Synthetic Adversarial Log Objects (SALO)

A framework for the generation of log events without the need for infrastructure or actions to initiate the event that causes a log event.

In 2 lists

Tools >Detection, Alerting and Automation Platforms

ElastAlert

A framework for alerting on anomalies, spikes, or other patterns of interest from data in Elasticsearch

In 4 listsDetails

StreamAlert

A serverless, realtime data analysis framework which empowers you to ingest, analyze, and alert on data from any environment, using datasources and alerting logic you define

In 2 lists

Matano

An open source security lake platform (SIEM alternative) for threat hunting, detection and response on AWS. Matano lets you write advanced detections as code (using python) to correlate and alert on threats in realtime.

In 4 lists

Shuffle

A general purpose security automation platform.

Sublime

An open platform for detection, response, and threat hunting in email environments. Sublime lets you write advanced detections as code to alert and remediate threats like phishing in real-time.

Substation

A cloud native data pipeline and transformation toolkit for security teams.

In 5 listsDetails

Tools >Endpoint Monitoring

osquery

(github) - SQL powered operating system instrumentation, monitoring, and analytics

In 5 listsDetails

Kolide Fleet

A flexible control server for osquery fleets

Zeek Agent

An endpoint monitoring agent that provides host activity to Zeek

Velociraptor

Endpoint visibility and collection tool

In 5 listsDetails

Sysdig

A tool for deep Linux system visibility, with native support for containers. Think about sysdig as strace + tcpdump + htop + iftop + lsof + ...awesome sauce

In 3 lists

go-audit

An alternative to the Linux auditd daemon

Sysmon

A Windows system service and device driver that monitors and logs system activity to the Windows event log

Sysmon for Linux

A security monitoring tool. It depends on SysinternalsEBPF.

In 3 lists

OSSEC

An open-source Host-based Intrusion Detection System (HIDS)

In 6 listsDetails

WAZUH

An open-source security platform

In 7 listsDetails

sysmon-DFIR

Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.

sysmon-config

Sysmon configuration file template with default high-quality event tracing.

In 2 lists

sysmon-modular

A repository of sysmon configuration modules. It also includes a mapping of Sysmon configurations to MITRE ATT&CK techniques.

In 2 lists

auditd configuration

Linux auditd ruleset that produces telemetry required for threat detection use cases.

In 3 lists

osquery-configuration

A repository for using osquery for incident detection and response.

Tools >Network Monitoring

Zeek

(formerly Bro) - A network security monitoring tool

In 3 lists

ntopng

A web-based network traffic monitoring tool

In 3 lists

Suricata

A network threat detection engine

In 5 lists

Snort

(github) - A network intrusion detection tool

In 9 listsDetails

Joy

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring

In 2 lists

Netcap

A framework for secure and scalable network traffic analysis

Arkime

) - A large scale and open source full packet capture and search tool

In 4 lists

Stenographer

A full-packet-capture tool

In 5 listsDetails

JA3

A method for profiling SSL/TLS Clients and Servers

HASSH

Profiling Method for SSH Clients and Servers

In 2 lists

RDFP

Zeek Remote desktop fingerprinting script based on FATT (Fingerprint All The Things)

FATT

A pyshark based script for extracting network metadata and fingerprints from pcap files and live network traffic

FingerprinTLS

A TLS fingerprinting method

Mercury

Network fingerprinting and packet metadata capture

GQUIC Protocol Analyzer for Zeek

Recog

A framework for identifying products, services, operating systems, and hardware by matching fingerprints against data returned from various network probes

Hfinger

Fingerprinting HTTP requests

JARM

An active Transport Layer Security (TLS) server fingerprinting tool.

Tools >Email Monitoring

Sublime

An open platform for detection, response, and threat hunting in email environments. Sublime lets you write advanced detections as code to alert and remediate threats like phishing in real-time.

Detection Rules

Sigma

Generic Signature Format for SIEM Systems

In 5 listsDetails

Splunk Detections

and Analytic stories

In 2 lists

Elastic Detection Rules

Elastic's detection rules written natively for the Elastic SIEM. Can easily be converted for use by other SIEMs using Uncoder.

In 3 lists

MITRE CAR

The Cyber Analytics Repository is a knowledge base of analytics developed by MITRE based on the Adversary Tactics, Techniques, and Common Knowledge (ATT&CK™) adversary model.

In 3 lists

Awesome YARA Rules

YARA rules, tools, and people.

In 2 lists

Chronicle Detection Rules

Collection of YARA-L 2.0 sample rules for the Chronicle Detection API.

In 2 lists

GCP Security Analytics

Community Security Analytics provides a set of community-driven audit & threat queries for Google Cloud.

In 2 lists

ThreatHunter-Playbook

A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.

In 3 lists

Sublime Detection Rules

Email attack detection, response, and hunting rules.

Dataset

Mordor

Pre-recorded security events generated by simulated adversarial techniques in the form of JavaScript Object Notation (JSON) files. The data is categorized by platforms, adversary groups, tactics and techniques defined by the Mitre ATT&CK Framework.

SecRepo.com

(github repo) - Samples of security related data.

Boss of the SOC (BOTS) Dataset Version 1

Boss of the SOC (BOTS) Dataset Version 2

Boss of the SOC (BOTS) Dataset Version 3

EMBER

(paper) - The EMBER dataset is a collection of features from PE files that serve as a benchmark dataset for researchers

In 3 lists

theZoo

A repository of LIVE malwares

In 5 listsDetails

CIC Datasets

Canadian Institute for Cybersecurity datasets

Netresec's PCAP repo list

A list of public packet capture repositories, which are freely available on the Internet.

In 2 lists

PCAP-ATTACK

A repo of PCAP samples for different ATT&CK techniques.

EVTX-ATTACK-SAMPLES

A repo of Windows event samples (EVTX) associated with ATT&CK techniques (EVTX-ATT&CK Sheet).

In 3 lists

Public Security Log Sharing Site

attack_data

A repository of curated datasets from various attacks.

Resources

ThreatHunter-Playbook

A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.

The ThreatHunting Project

A great collection of hunts and threat hunting resources.

CyberThreatHunting

A collection of resources for threat hunters.

Hunt-Detect-Prevent

Lists of sources and utilities to hunt, detect and prevent evildoers.

Alerting and Detection Strategy Framework

Generating Hypotheses for Successful Threat Hunting

Expert Investigation Guide - Threat Hunting

Active Directory Threat Hunting

Threat Hunting for Fileless Malware

Windows Commands Abused by Attackers

Deception-as-Detection

Deception based detection techniques mapped to the MITRE’s ATT&CK framework.

On TTPs

Threat Hunting Techniques - AV, Proxy, DNS and HTTP Logs

Detecting Malware Beacons Using Splunk

Data Science Hunting Funnel

Use Python & Pandas to Create a D3 Force Directed Network Diagram

Syscall Auditing at Scale

In 2 lists

Catching attackers with go-audit and a logging pipeline

The Coventry Conundrum of Threat Intelligence

Signal the ATT&CK: Part 1

Building a real-time threat detection capability with Tanium that focuses on documented adversarial techniques.

Bro-Osquery

Large-Scale Host and Network Monitoring Using Open-Source Software

Malware Persistence

Collection of various information focused on malware persistence: detection (techniques), response, pitfalls and the log collection (tools).

In 3 lists

Threat Hunting with Jupyter Notebooks

How Dropbox Security builds tools for threat detection and incident response

Introducing Event Query Language

The No Hassle Guide to Event Query Language (EQL) for Threat Hunting

(PDF)

Introducing the Funnel of Fidelity

(PDF)

Detection Spectrum

(PDF)

Capability Abstraction

(PDF)

Awesome YARA Rules

YARA rules, tools, and people.

In 2 lists

Defining ATT&CK Data Sources

A two-part blog series that outlines a new methodology to extend ATT&CK’s current data sources.

In 2 lists

DETT&CT: MAPPING YOUR BLUE TEAM TO MITRE ATT&CK™

A blog that describes how to align MITRE ATT&CK-based detection content with data sources.

In 2 lists

Lessons Learned in Detection Engineering

A well experienced detection engineer describes in detail his observations, challenges, and recommendations for building an effective threat detection program.

A Research-Driven process applied to Threat Detection Engineering Inputs

.

Investigation Scenario

tweets by Chris Sanders

Oh My Malware

A video series focused on malware execution and investigations using Elastic Security.

Resources >Frameworks

MITRE ATT&CK

A curated knowledge base and model for cyber adversary behavior, reflecting the various phases of an adversary’s lifecycle and the platforms they are known to target.

Alerting and Detection Strategies Framework

A framework for developing alerting and detection strategies.

In 2 lists

A Simple Hunting Maturity Model

The Hunting Maturity Model describes five levels of organizational hunting capability, ranging from HMM0 (the least capability) to HMM4 (the most).

The Pyramic of Pain

The relationship between the types of indicators you might use to detect an adversary's activities and how much pain it will cause them when you are able to deny those indicators to them.

The PARIS Model

A model for threat hunting.

Cyber Kill Chain

It is part of the Intelligence Driven Defense® model for identification and prevention of cyber intrusions activity. The model identifies what the adversaries must complete in order to achieve their objective.

The DML Model

The Detection Maturity Level (DML) model is a capability maturity model for referencing ones maturity in detecting cyber attacks.

NIST Cybersecurity Framework

OSSEM

(Open Source Security Events Metadata) - A community-led project that focuses on the documentation and standardization of security event logs from diverse data sources and operating systems.

Open Cybersecurity Schema Framework (OCSF)

A framework for creating schemas and it also delivers a cybersecurity event schema built with the framework (schema browser).

MITRE Engage

A framework for planning and discussing adversary engagement operations that empowers you to engage your adversaries and achieve your cybersecurity goals.

MaGMa Use Case Defintion Model

A business-centric approach for planning and defining threat detection use cases.

Resources >Windows

Windows Logging Cheat Sheets

Multiple cheatsheets outlined recommendations for Windows Event logging at various levels of granularity.

In 2 lists

Active Directory Threat Hunting

Windows Hunting

A collection of Windows hunting queries

Windows Commands Abused by Attackers

JPCERT - Detecting Lateral Movement through Tracking Event Logs

Tool Analysis Result Sheet

In 2 lists

Splunking the Endpoint: Threat Hunting with Sysmon

Hunting with Sysmon

Threat Hunting with Sysmon: Word Document with Macro

Part I (Event ID 7)

Part II (Event ID 10)

The Sysmon and Threat Hunting Mimikatz wiki for the blue team

Splunkmon — Taking Sysmon to the Next Level

Sysmon Threat Detection Guide

(PDF)

Hunting the Known Unknowns (With PowerShell)

HellsBells, Let's Hunt PowerShells!

Hunting for PowerShell Using Heatmaps

Resources >Osquery

osquery Across the Enterprise

In 2 lists

osquery for Security — Part 1

osquery for Security — Part 2

Advanced osquery functionality, File integrity monitoring, process auditing, and more.

Tracking a stolen code-signing certificate with osquery

Monitoring macOS hosts with osquery

Kolide's Blog

The osquery Extensions Skunkworks Project

Resources >DNS

Detecting DNS Tunneling

Hunting the Known Unknowns (with DNS)

Detecting dynamic DNS domains in Splunk

Random Words on Entropy and DNS

Tracking Newly Registered Domains

Suspicious Domains Tracking Dashboard

Proactive Malicious Domain Search

DNS is NOT Boring

Using DNS to Expose and Thwart Attacks

Actionable Detects

Blue Team Tactics

Resources >Fingerprinting

JA3: SSL/TLS Client Fingerprinting for Malware Detection

TLS Fingerprinting with JA3 and JA3S

HASSH - a profiling method for SSH Clients and Servers

HASSH @BSides Canberra 2019 - Slides

Finding Evil on the Network Using JA3/S and HASSH

RDP Fingerprinting - Profiling RDP Clients with JA3 and RDFP

Effective TLS Fingerprinting Beyond JA3

TLS Fingerprinting in the Real World

HTTP Client Fingerprinting Using SSL Handshake Analysis

(source code: mod_sslhaf

TLS fingerprinting - Smarter Defending & Stealthier Attacking

JA3er

a DB of JA3 fingerprints

In 2 lists

An Introduction to HTTP fingerprinting

TLS Fingerprints

collected from the University of Colorado Boulder campus network

The use of TLS in Censorship Circumvention

TLS Beyond the Browser: Combining End Host and Network Data to Understand Application Behavior

HTTPS traffic analysis and client identification using passive SSL/TLS fingerprinting

Markov Chain Fingerprinting to Classify Encrypted Traffic

HeadPrint: Detecting Anomalous Communications through Header-based Application Fingerprinting

Resources >Data Science

data_hacking

Examples of using IPython, Pandas, and Scikit Learn to get the most out of your security data.

Reverse engineering the analyst: building machine learning models for the SOC

msticpy

A library for InfoSec investigation and hunting in Jupyter Notebooks.

Resources >Research Papers

Intelligence-Driven Computer Network Defense Informed by Analysis of Adversary Campaigns and Intrusion Kill Chains

The Diamond Model of Intrusion Analysis

EXPOSURE: Finding Malicious Domains Using Passive DNS Analysis

On Botnets that use DNS for Command and Control

Intelligent, Automated Red Team Emulation

Machine Learning for Encrypted Malware Traffic Classification

Resources >Blogs

David Bianco's Blog

DFIR and Threat Hunting Blog

CyberWardog's Blog

(old)

Chris Sanders' Blog

Kolide's Blog

Anton Chuvakin

Alexandre Teixeira

Podcasts

Detection: Challenging Paradigms

by SpecterOps

Darknet Diaries

by Andy Greenberg - True stories from the dark side of the Internet.

In 4 lists

Risky Business

by Patrick Gray

In 2 lists

Newsletters

Detection Engineering Weekly

by Zack 'techy' Allen

In 3 lists

This Week in 4n6

A weekly roundup of digital forensics and incident response news.

In 2 lists

Videos

SANS Threat Hunting and IR Summit 2017

SANS Threat Hunting and IR Summit 2016

BotConf 2016 - Advanced Incident Detection and Threat Hunting using Sysmon and Splunk

BSidesCharm 2017 - Detecting the Elusive: Active Directory Threat Hunting

BSidesAugusta 2017 - Machine Learning Fueled Cyber Threat Hunting

In 2 lists

Toppling the Stack: Outlier Detection for Threat Hunters

BSidesPhilly 2017 - Threat Hunting: Defining the Process While Circumventing Corporate Obstacles

Black Hat 2017 - Revoke-Obfuscation: PowerShell Obfuscation Detection (And Evasion) Using Science

DefCon 25 - MS Just Gave the Blue Team Tactical Nukes

BSides London 2017 - Hunt or be Hunted

SecurityOnion 2017 - Pivoting Effectively to Catch More Bad Guys

SkyDogCon 2016 - Hunting: Defense Against The Dark Arts

BSidesAugusta 2017 - Don't Google 'PowerShell Hunting'

BSidesAugusta 2017 - Hunting Adversaries w Investigation Playbooks & OpenCNA

Visual Hunting with Linked Data

RVAs3c - Pyramid of Pain: Intel-Driven Detection/Response to Increase Adversary's Cost

BSidesLV 2016 - Hunting on the Endpoint w/ Powershell

Derbycon 2015 - Intrusion Hunting for the Masses A Practical Guide

BSides DC 2016 - Practical Cyborgism: Getting Start with Machine Learning for Incident Detection

SANS Webcast 2018 - What Event Logs? Part 1: Attacker Tricks to Remove Event Logs

Profiling And Detecting All Things SSL With JA3

ACoD 2019 - HASSH SSH Client/Server Profiling

QueryCon 2018

An annual conference for the osquery open-source community (querycon.io)

Visual Hunting with Linked Data Graphs

SecurityOnion Con 2018 - Introduction to Data Analysis

Insider Threats Detection at Airbus – AI up Against Data Leakage and Industrial Espionage

Cyber Security Investigations with Jupyter Notebooks

Trainings

Applied Network Defense

courses by Chris Sanders; Investigation theory, Practical threat hunting, Detection engineering with Sigma, etc.

Security Blue Team

(BTL1 and BTL2 certificates)

LetsDefend

Hands-On SOC Analyst Training

TryHackMe

Hands-on cyber security training through real-world scenarios.

In 7 listsDetails

HackTheBox

While not directly related to threat detection, the website features training modules on general security and offensive topics that can be beneficial for junior SOC analysts.

Labs

DetectionLab

Vagrant & Packer scripts to build a lab environment complete with security tooling and logging best practices.

In 3 lists

Splunk Boss of the SOC

Hands-on workshops and challenges to practice threat hunting using the BOTS and other datasets.

HELK

A Hunting ELK (Elasticsearch, Logstash, Kibana) with advanced analytic capabilities.

In 4 lists

BlueTeam Lab

A detection lab created with Terraform and Ansible in Azure.

attack_range

A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk.

In 2 lists

Twitter

"Awesome Detection" Twitter List

Twitter accounts that tweet about threat detection, hunting and DFIR.

Threat Simulation Tools

MITRE CALDERA

An automated adversary emulation system that performs post-compromise adversarial behavior within Windows Enterprise networks.

In 2 lists

APTSimulator

A Windows Batch script that uses a set of tools and output files to make a system look as if it was compromised.

In 5 listsDetails

Atomic Red Team

Small and highly portable detection tests mapped to the Mitre ATT&CK Framework.

In 6 listsDetails

Network Flight Simulator

flightsim is a lightweight utility used to generate malicious network traffic and help security teams to evaluate security controls and network visibility.

In 4 lists

Metta

A security preparedness tool to do adversarial simulation.

In 4 lists

Red Team Automation (RTA)

RTA provides a framework of scripts designed to allow blue teams to test their detection capabilities against malicious tradecraft, modeled after MITRE ATT&CK.

In 2 lists

SharpShooter

Payload Generation Framework.

CACTUSTORCH

Payload Generation for Adversary Simulations.

DumpsterFire

A modular, menu-driven, cross-platform tool for building repeatable, time-delayed, distributed security events.

In 4 lists

Empire

(website) - A PowerShell and Python post-exploitation agent.

In 3 lists

PowerSploit

A PowerShell Post-Exploitation Framework.

In 7 listsDetails

RedHunt-OS

A Virtual Machine for Adversary Emulation and Threat Hunting. RedHunt aims to be a one stop shop for all your threat emulation and threat hunting needs by integrating attacker's arsenal as well as defender's toolkit to actively identify the threats in your environment.

In 4 lists

Infection Monkey

An open source Breach and Attack Simulation (BAS) tool that assesses the resiliency of private and public cloud environments to post-breach attacks and lateral movement.

In 2 lists

attack_range

A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk.

In 2 lists

Threat Simulation Resources

MITRE's Adversary Emulation Plans

Awesome Red Teaming

A list of awesome red teaming resources

In 2 lists

Red-Team Infrastructure Wiki

Wiki to collect Red Team infrastructure hardening resources.

In 2 lists

Payload Generation using SharpShooter

SpecterOps Blog

Threat Hunting

Advanced Threat Tactics

A free course on red team operations and adversary simulations.

Signal the ATT&CK: Part 1

Building a real-time threat detection capability with Tanium that focuses on documented adversarial techniques.

Red Teaming/Adversary Simulation Toolkit

A collection of open source and commercial tools that aid in red team operations.

C2 Matrix

(Google Sheets)

adversary_emulation_library

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

See category
94

Awesome-Selfhosted

awesome-selfhosted/awesome-selfhosted

A list of Free Software network services and web applications which can be hosted on your own servers

Fresh★ 323k1312 entriesPushed today
91

Awesome Hacker Search Engines

edoardottt/awesome-hacker-search-engines

A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more

Fresh★ 11k574 entriesPushed today
91

Awesome Privacy

lissy93/awesome-privacy

🦄 A curated list of privacy & security-focused software and services

Fresh★ 9.9k459 entriesPushed today
89

Awesome Bug Bounty Tools

vavkamil/awesome-bugbounty-tools

A curated list of various bug bounty tools

Fresh★ 6.3k400 entriesPushed yesterday
88

android-security-awesome

ashishb/android-security-awesome

A collection of android security related resources

Fresh★ 9.7k233 entriesPushed 2 days ago
87

Awesome Web Security

qazbnm456/awesome-web-security

🐶 A curated list of Web Security materials and resources.

Fresh★ 14k368 entriesPushed 15 days ago