Skip to content
#

soc

Here are 55 public repositories matching this topic...

Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools, logging configuration and best practices, event log references, resources, labs, data manipulation online tools, blogs, newsletters, good reads, books, trainings, podcasts, videos and twitter/x accounts.

  • Updated Mar 23, 2026
  • HTML

Offline Microsoft 365 forensic triage for exported CSV logs (UAL + Entra ID sign-ins). Generates a court-friendly, evidence-focused HTML report and SQLite dataset with suspicious activity findings no Microsoft APIs required.

  • Updated Jan 18, 2026
  • HTML

A scalable, Lakehouse-based SIEM architecture using Apache Kafka, Spark, Hadoop, and Hive for real-time security threat detection and large-scale log analytics

  • Updated Mar 14, 2026
  • HTML
TotalOSINT

TotalOSINT is a privacy-first, client-side OSINT toolkit for security analysts. Instantly extract IOCs (IPs, Domains, Hashes) from raw logs and launch bulk investigations across dozens of threat intelligence sources. Zero-data-persistence workflow for SOC and DFIR teams. No installation required.

  • Updated Jan 28, 2026
  • HTML
FORTRESS

FORTRESS is an interactive security control simulation platform designed for security architects, analysts, and students to understand the full spectrum of security controls. Featuring a comprehensive NIST SP 800-53 aligned control matrix, interactive attack simulations, scenario-based training, a 50+ control encyclopedia, defense builder👨🏿‍💻🔒.

  • Updated Mar 4, 2026
  • HTML

Improve this page

Add a description, image, and links to the soc topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the soc topic, visit your repo's landing page and select "manage topics."

Learn more