Skip to content
View thomaspatzke's full-sized avatar

Sponsors

@Arikius
@dleecefft
Private Sponsor
Private Sponsor
@defensivedepth

Organizations

@oscd-initiative @SigmaHQ

Block or report thomaspatzke

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Universal cyber assistant: ~80 audited Kali tools + an expert skills library, driven by any model over MCP or direct run

Go 4 Updated Jul 28, 2026

LLM benchmark results for THOR forensic finding triage quality

Python 28 1 Updated Sep 28, 2026

A complete Sigma detection engineering toolkit: parser, linter, evaluator, correlation engine, conversion framework, streaming daemon, MCP and LSP servers 🦀

Rust 156 18 Updated Oct 5, 2026

Org profile and brand assets for OpenTide

1 Updated Sep 9, 2026

A pySigma wrapper and langchain toolkit for automatic rule creation/translation

Python 98 12 Updated Nov 3, 2025

An opensource sigma conversion tool built using pysigma

Python 176 38 Updated Oct 5, 2026

Cyber Underground General Intelligence Requirements

JSON 106 7 Updated Feb 2, 2024

Sigma rule specification

210 60 Updated Sep 25, 2026
Python 575 60 Updated Sep 21, 2026

Collection of Cyber Threat Intelligence sources from the deep and dark web

7,339 1,220 Updated Oct 5, 2026

Public release of Telepathy, an OSINT toolkit for investigating Telegram chats.

Python 1,250 162 Updated Aug 13, 2026

GPT4All: Run Local LLMs on Any Device. Open-source and available for commercial use.

C++ 77,384 8,274 Updated May 27, 2025

A repository of breaches of AWS customers

817 61 Updated Sep 9, 2026

Collection of Jupyter Notebooks by @fr0gger_

HTML 197 43 Updated May 11, 2026

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

Python 856 120 Updated Oct 3, 2026

Elastic Security detection content for Endpoint

YARA 1,496 168 Updated Oct 6, 2026

Sigma signatures matcher written in Python

Python 10 7 Updated Dec 23, 2024

pySigma-backend-qradar

Python 10 2 Updated Apr 15, 2023

A collection of papers, blogs, and resources that make up the quintessential aspects of cyber threat intelligence

738 86 Updated Apr 25, 2026

Some Threat Hunting queries useful for blue teamers

132 22 Updated May 13, 2022

PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office

PowerShell 36 4 Updated Mar 15, 2023

The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat hunting rules.

Python 153 16 Updated Apr 25, 2022

This repo is where I store my Threat Hunting ideas/content

90 17 Updated Mar 20, 2026

The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact validation processes as well as increase access to artifa…

HTML 664 50 Updated Jul 14, 2026

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

PowerShell 792 84 Updated Oct 29, 2022

Exploitation paths allowing you to (mis)use the Windows Privileges to elevate your rights within the OS.

2,515 312 Updated Feb 24, 2023
4 Updated Jul 18, 2017

Python API for interacting with sigma rules.

Python 55 5 Updated Aug 17, 2026

A repo that contains recursive directory listings (using PowerShell) of a vanilla (clean) install of every Windows OS version to compare and see what's been added with each update. Use these CSVs t…

207 22 Updated Oct 29, 2025
Next