Skip to content

A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters to share knowledge, collaborate on techniques, and advance the field of threat hunting.

Notifications You must be signed in to change notification settings

THOR-Collective/HEARTH

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

🔥 Hunting Exchange And Research Threat Hub (HEARTH) 🔥

HEARTH Logo

A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters to share knowledge, collaborate on techniques, and advance the field of threat hunting.

HEARTH incorporates ideas for three distinct types of hunts classified by the PEAK Threat Hunting Framework:

  • Flames: Hypothesis-driven investigations with clear, testable hypotheses
  • Embers: Environment baselining and exploratory analysis
  • Alchemy: Model-assisted and algorithmic approaches to threat detection

🔥 Why

Generating effective hypotheses and ideas for threat hunting is hard. HEARTH provides a collaborative environment where hunters can share, develop, and refine their methodologies while building a comprehensive knowledge base for the security community.

🔥 Goals

  • Encourage collaboration
  • Inspire threat hunters with practical and theoretical hunting ideas

🔥 Repository Structure

HEARTH/
├── Flames/              # Hypothesis-Driven hunts
├── Embers/              # Baseline Analysis
├── Alchemy/             # Model-Assisted & Algorithmic Hunting
├── Forge/               # Development space
├── Kindling/            # Resources & Templates
├── Keepers/             # Guidelines & Standards
└── Assets/              # Images & Logos

🔥 How to Contribute to HEARTH

We welcome contributions to the Hunting Exchange And Research Threat Hub! Contributing is simple:

🔥 Submit a Hunt Idea

We welcome contributions from all threat hunters! To share your ideas:

  1. Go to Submit New Issue
  2. Select "HEARTH Hunt Submission Form"
  3. Fill out the required information about your hunt
  4. Submit for review

See our Contribution Guidelines for detailed instructions and requirements.

Important

Approved HEARTH Hunt submissions receive an official hunt number, community recognition, and integration into the HEARTH repository.

🔥 Other Contributions

🔨 The Forge

Got a half-baked idea or something that needs work? Submit it to The Forge, where we collect and refine early-stage threat hunting ideas for all hunt types.

🧯 Have feedback or suggestions?

Use our standard HEARTH Issue Template for:

  • Bug reports
  • Feature requests
  • General feedback

🔥 Community Roles

HEARTH Keepers

Repository maintainers and reviewers who:

  • Review submissions
  • Maintain quality standards
  • Guide community development
  • Facilitate collaboration

HEARTH Crafters

Regular contributors who:

  • Submit hunt ideas
  • Participate in reviews
  • Support the community
  • Share knowledge

HEARTH Apprentices

New members who:

  • Learn methodologies
  • Make initial contributions (see the Forge)
  • Engage with community

Additional Resources

  • 🪵 Resources Guide: A curated collection of threat intelligence sources, security blogs, research papers, and tools to help generate and refine hunt ideas.
  • Hunt Generation Template: Once you've got your idea, use this to plan out your hunt in detail.
  • Hunt Review Template: After your hunt, use this to capture all key findings and ensure nothing is missed when sharing your results.

Made with 🔥 by the HEARTH team:

Lauren 🤠 x:@jotunvillur / LI:Lauren Proehl
Sydney 🏋️‍♀️ x:@letswastetime / LI:Sydney Marrone
John 💀 x:@AngryInfoSecGuy / LI:John Grageda


🔥 **Keep the HEARTH burning!** 🔥

About

A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters to share knowledge, collaborate on techniques, and advance the field of threat hunting.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published