Skip to content
View mattreduce's full-sized avatar

Organizations

@hashivim @MythicAgents @srcmtd

Block or report mattreduce

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

🔍 detection

Detection engineering
38 repositories

Living off the False Positive!

Python 40 6 Updated Jan 31, 2025

✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️

4,307 720 Updated Jul 15, 2024

Open Source Security Events Metadata (OSSEM)

Python 1,272 215 Updated Feb 27, 2023

Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).

Jupyter Notebook 748 107 Updated Mar 14, 2025

Rules generated from our investigations.

197 30 Updated Jun 17, 2025

Sigma rules from Joe Security

218 32 Updated Nov 4, 2024

Production-ready detection & response queries for osquery

Makefile 586 46 Updated Aug 13, 2025

Collection of example YARA-L rules for use within Google Security Operations

Python 434 111 Updated Aug 5, 2025

Collection of KQL queries

1,569 370 Updated Dec 22, 2024

Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence, research and analytics.

YARA 71 18 Updated Jun 10, 2025

OCSF Schema

719 168 Updated Aug 26, 2025

Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations se…

Python 1,101 117 Updated Aug 29, 2025

Repository of Yara Rules

YARA 115 11 Updated Apr 11, 2025

Detect Tactics, Techniques & Combat Threats

SCSS 2,198 343 Updated Jul 25, 2025

Security ML models encoded as Yara rules

Python 213 27 Updated Jul 6, 2023

Repository of YARA rules made by Trellix ATR Team

YARA 609 82 Updated Mar 18, 2025

Anvilogic Forge

107 7 Updated Aug 26, 2025

A curated list of threat detection rule repositories and sharing communities.

6 Updated Oct 27, 2022
Python 17 3 Updated May 5, 2024

Snowflake Usage Anomaly Detection & Alerting System

Python 17 1 Updated Jun 11, 2024

A rewrite of YARA in Rust.

Rust 852 81 Updated Aug 29, 2025

Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifyin…

1,041 101 Updated Jun 30, 2025

Code written as part of our various malware investigations

Python 400 87 Updated Jan 8, 2025
Python 23 2 Updated Sep 20, 2024

✨ A compilation of suggested tools/services for each component in a detection and response pipeline, along with real-world examples. The purpose is to create a reference hub for designing effective…

284 24 Updated Feb 5, 2024

A high-performance observability data pipeline.

Rust 20,207 1,842 Updated Aug 29, 2025

Wazuh - Docker containers

Shell 894 486 Updated Aug 29, 2025

Sigma Rules written by BushidoUK

3 1 Updated Aug 10, 2025

A security tool to detect malicious Go packages by verifying checksums in go.sum against the original source code

Go 8 Updated Feb 5, 2025

Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.

Rust 146 8 Updated Aug 28, 2025