Watcher - Open Source AI-powered Cyber Threat Intelligence & Hunting Platform. Developed with Django & React JS.
-
Updated
May 27, 2026 - JavaScript
Watcher - Open Source AI-powered Cyber Threat Intelligence & Hunting Platform. Developed with Django & React JS.
Open source platform for cyber security analysts with many features for threat intelligence and detection engineering.
A simple tool designed to create Atomic Red Team tests with ease.
A list of malicious IP addresses associated with botnets, cyberattacks, and the generation of artificial traffic on websites. Useful for network administrators and security companies to block threats and protect against DDoS attacks.
Threat hunting command system for agentic IDEs
Autonomous SOC layer for Wazuh using OpenClaw agents with MCP . Auto-triage alerts, correlate incidents, generate response plans with human-in-the-loop approval. Evidence packs, Prometheus metrics, Slack integration.
Real-time ransomware detection and auto-containment system for Linux endpoints — entropy analysis, canary files, process lineage scoring, and AI threat classification.
Global Threat Map is an interactive visualization tool that displays potential cybersecurity threats around the world using real IP data from FireHOL threat intelligence feeds
Discord sunucuları için profesyonel SIEM ve güvenlik analiz platformu. Gerçek zamanlı tehdit algılama, gelişmiş log arşivleme ve otomatik müdahale sistemleriyle tam kapsamlı bir güvenlik merkezi. Next.js, Discord.js ve Redis ile geliştirildi.
Open-source AI-powered SOC platform for anomaly detection, threat analysis, and automated cyber incident response.
AI-powered zero-day threat detection demo: Python + IsolationForest backend with live React dashboard, simulating cloud workload attacks and automated isolation response.
100% offline, single HTML file static analyser for SOC / DFIR triage — 70+ file formats, 1 Million row EVTX / PCAP / CSV timeline, 550+ YARA rules, VBA macro extraction, PE / ELF / Mach-O capability tagging, SPF / DKIM / DMARC + phishing checks, recursive payload deobfuscation, IOC extraction, STIX 2.1 / MISP export. Sigstore-signed + reproducible.
Browser-native phishing defense suite with 49 real-time detectors covering AiTM proxy, OAuth abuse, credential harvesting, WebSocket exfiltration, canvas phishing, AI-generated lures, and more. MV3 Chrome extension with zero external dependencies.
🚨 Transform security alerts into SOC investigation guides with MITRE ATT&CK mapping, investigation commands, and containment playbooks
Sniffox — a vibe-coded network sniffer that runs in your browser. Real-time packet capture, deep protocol dissection, 3D traffic visualization, and live threat detection.
Browser extension for Discord Web token protection
Grid Guardian Web is a high-performance, AI-powered security monitoring and threat intelligence dashboard. Built for security professionals and power users, it provides a real-time, hardware-inspired interface for tracking system health, managing defensive shields, and analyzing global threat intelligence.
🤖 Build intelligent dialogue systems with Sentra Agent, an all-in-one AI framework for real-world applications, featuring multi-stage decision-making and extensive tool support.
KubeRTSec — eBPF-based Kubernetes runtime security system that intercepts execve syscalls to detect and optionally terminate malicious processes in real time, providing kernel-level visibility and enforcement without application instrumentation.
Add a description, image, and links to the threat-detection topic page so that developers can more easily learn about it.
To associate your repository with the threat-detection topic, visit your repo's landing page and select "manage topics."