Home

Awesome

The Threat Hunter Playbook

Binder License: MIT Twitter Open_Threat_Research Community Open Source Love

<img src="docs/images/logo/logo.png" width=200>

The Threat Hunter Playbook is a community-driven, open source project to share detection logic, adversary tradecraft and resources to make detection development more efficient. All the detection documents in this project follow the structure of MITRE ATT&CK categorizing post-compromise adversary behavior in tactical groups and are available in the form of interactive notebooks. The use of notebooks not only allow us to share text, queries and expected output, but also code to help others run detection logic against pre-recorded security datasets locally or remotely through BinderHub cloud computing environments.

Docs: https://threathunterplaybook.com/

Goals

Author

Roberto Rodriguez @Cyb3rWard0g

Official Committers

Acknowledgements