awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to certcc/ssvc

Projects sharing features with SSVC

21 open-source projects similar to certcc/ssvc, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • neo23x0/sigmaNeo23x0 avatar

    Neo23x0/sigma

    10,591View on GitHub↗

    Sigma is a generic SIEM signature format and log event pattern standard used to describe malicious activity. It provides a vendor-neutral system for defining security event patterns in YAML, ensuring that detection logic remains portable across different monitoring platforms. The project maintains a curated library of peer-reviewed detection rules that identify threats and compliance violations. This standardized approach allows for the exchange of threat hunting logic and the translation of generic signatures into specific queries for various security information and event management systems

    Python
    View on GitHub↗10,591
  • sigmahq/sigmaSigmaHQ avatar

    SigmaHQ/sigma

    10,136View on GitHub↗

    Sigma is a suite of tools for defining generic log signatures and translating them for multiple backends. It provides a structured way to define malicious behavior and detection logic independently of any specific backend technology, acting as a translation engine that maps generic event fields and correlation logic to the proprietary query languages of security data lakes and SIEM platforms. The project features a plugin-based multi-backend query generator that exports security detections into various database and log management formats. It also includes a threat framework mapping tool that

    Pythonelasticsearchidslogging
    View on GitHub↗10,136
  • bushidouk/ransomware-tool-matrixBushidoUK avatar

    BushidoUK/Ransomware-Tool-Matrix

    1,400View on GitHub↗

    This repository contains a list of which tools each ransomware gang or extortionist gang uses - As defenders, we should exploit the fact that many of the tools used by these cybercriminals are often reused - We can threat hunt, deploy detections, and block these tools to eliminate the ability of…

    View on GitHub↗1,400

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • bushidouk/russian-apt-tool-matrixBushidoUK avatar

    BushidoUK/Russian-APT-Tool-Matrix

    236View on GitHub↗

    A tool matrix for Russian APTs based on the Ransomware Tool Matrix

    View on GitHub↗236
  • cyb3rxp/awesome-soccyb3rxp avatar

    cyb3rxp/awesome-soc

    1,626View on GitHub↗
    architecturecertcsirt
    View on GitHub↗1,626
  • elastic/detection-ruleselastic avatar

    elastic/detection-rules

    2,508View on GitHub↗

    This project is a detection-as-code framework providing a library of security monitoring rules and predefined detection content for Elasticsearch data indices. It serves as a threat detection rule library designed to identify malicious activity and attack patterns across diverse data streams in cloud and on-premises environments. The framework implements a detection engineering workflow where rules are defined in YAML and managed as versioned code. It includes a set of command-line utilities for automated rule deployment, metadata searching, and template generation, supported by a Python-base

    Pythonthreat-detectionthreat-hunting
    View on GitHub↗2,508
  • joesecurity/sigma-rulesJ

    joesecurity/sigma-rules

    0View on GitHub↗

    Community Sigma Rules written by Joe Security for threat hunting in sandboxes, licensed under GPL. For a detailed description about our Sigma rules for Sandboxes please have a look at this Blog Post.

    View on GitHub↗0
  • lolc2/lolc2.github.ioL

    lolc2/lolc2.github.io

    0View on GitHub↗

    A curated collection of C2 frameworks that leverage legitimate services to evade detection.

    View on GitHub↗0
  • lolesxi-project/lolesxiLOLESXi-Project avatar

    LOLESXi-Project/LOLESXi

    154View on GitHub↗

    LOLESXi is a curated list of living off the land behaviours observed via public reporting.

    HTML
    View on GitHub↗154
  • magicsword-io/lolrmmmagicsword-io avatar

    magicsword-io/LOLRMM

    372View on GitHub↗

    Welcome to LOLRMM (Living Off the Land Remote Monitoring and Management), a community-driven project that provides a curated list of Remote Monitoring and Management (RMM) tools that could potentially be abused by threat actors. Our mission is to assist security professionals in staying informed…

    MDX
    View on GitHub↗372
  • mdecrevoisier/sigma-detection-rulesmdecrevoisier avatar

    mdecrevoisier/SIGMA-detection-rules

    437View on GitHub↗

    SIGMA detection rules provides a free set of >350 advanced correlation rules to be used for suspicious hunting activities.

    View on GitHub↗437
  • mthcht/gtfobins.github.iomthcht avatar

    mthcht/GTFOBins.github.io

    1View on GitHub↗

    GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems.

    HTML
    View on GitHub↗1
  • mthcht/lolbasmthcht avatar

    mthcht/LOLBAS

    1View on GitHub↗

    All the different files can be found behind a fancy frontend here: https://lolbas-project.github.io (thanks @ConsciousHacker for this bit of eyecandy and the team over at https://gtfobins.github.io/). This repo serves as a place where we maintain the YML files that are used by the fancy frontend.

    XSLT
    View on GitHub↗1
  • mthcht/sigmamthcht avatar

    mthcht/sigma

    1View on GitHub↗

    Generic Signature Format for SIEM Systems

    Python
    View on GitHub↗1
  • p4t12ick/sigma-rule-repositoryP4T12ICK avatar

    P4T12ICK/Sigma-Rule-Repository

    93View on GitHub↗

    Sigma-Rule-Repository is a collection of detection rules in Sigma Format. In contrast to other Sigma repositories, this repository contains for every detection rule a testing documentation. The detection rules are sorted based on the Mitre ATT&CK Techniques.

    View on GitHub↗93
  • rabobank-cdc/dettectrabobank-cdc avatar

    rabobank-cdc/DeTTECT

    2,303View on GitHub↗

    Latest version: 2.2.0

    SCSS
    View on GitHub↗2,303
  • redcanaryco/atomic-red-teamredcanaryco avatar

    redcanaryco/atomic-red-team

    12,089View on GitHub↗

    Atomic Red Team is an adversary simulation tool and detection validation suite designed to emulate attacker behaviors. It functions as a security control testing framework that uses a library of portable tests to verify if security monitoring and alerting systems correctly identify specific malicious techniques. The project serves as a MITRE ATT&CK emulation framework, mapping individual test executions to a standardized industry taxonomy of adversary behaviors. This mapping allows for the validation of security controls against the MITRE ATT&CK matrix to identify gaps in detection and respon

    Cmitremitre-attack
    View on GitHub↗12,089
  • the-dfir-report/sigma-rulesThe-DFIR-Report avatar

    The-DFIR-Report/Sigma-Rules

    210View on GitHub↗

    Rules generated from our public reports are now directly contributed to the SigmaHQ project.

    View on GitHub↗210
  • andreacristaldi/aptmapandreacristaldi avatar

    andreacristaldi/APTmap

    65View on GitHub↗

    Graphical map of known Advanced Persistent Threats

    HTML
    View on GitHub↗65
  • tsale/edr-telemetrytsale avatar

    tsale/EDR-Telemetry

    1,969View on GitHub↗

    This project aims to compare and evaluate the telemetry of various EDR products.

    Python
    View on GitHub↗1,969
  • bert-janp/hunting-queries-detection-rulesBert-JanP avatar

    Bert-JanP/Hunting-Queries-Detection-Rules

    1,710View on GitHub↗

    ``` ██ ██ ██████ ██ ██ ██ ██ ██ ██ █████ ██ ██ ██ ██ ██ ██ ▄▄ ██ ██ ██ ██ ██████ ███████ ▀▀

    Python
    View on GitHub↗1,710