Skip to content
#

threat-detection

Here are 2,966 public repositories matching this topic...

Open-source AI Security Operations Center: alert fusion, LLM-agent triage, MITRE ATT&CK investigation, and a replayable decision ledger for every agent step. Self-hostable, runs with no API keys, MIT licensed. Ships an MCP server for Claude, Cursor and Continue.

  • Updated Sep 29, 2026
  • Python

A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).

  • Updated Jun 3, 2026
Adrian

Open-source runtime AI agent security tool - monitors and controls AI agents, catching malicious tool use, prompt injection, and policy drift in real time, before the agent acts.

  • Updated Sep 15, 2026
  • Python

Open detection-rule standard for AI agent security threats — like Sigma, but for AI agents. Executable, testable rules for prompt injection, tool poisoning, context exfiltration and MCP attacks. Merged into open-source projects at Microsoft, Cisco, Gen Digital, MISP and FINOS. MIT-licensed.

  • Updated Sep 28, 2026
  • TypeScript

Add this topic to your repo

To associate your repository with the threat-detection topic, visit your repo's landing page and select "manage topics."

Learn more