Skip to content
INTCSC
Support

Threat Hunting

Approaches and references for proactive hunting beyond alert triage.

5 current resources

Best starting points

Highest starting-point strength resources in this category.

Atomic Red Team (opens in a new tab)

Why: Open library of portable, ATT&CK-mapped tests that security teams can run to check whether their detections actually catch real attacker behaviours.

Evergreen hub Strong start
Last verified 6 September 2026 Open

Awesome Threat Hunting (opens in a new tab)

Why: Curated collection of hunting tools, methods and references — a practical starting point when building or refreshing a threat-hunting programme.

Evergreen hub Strong start
Last verified 6 September 2026 Open

SigmaHQ detection rules (opens in a new tab)

Why: Open library of Sigma detection rules that translate to many SIEM and EDR backends, accelerating consistent hunting and detection engineering across tools.

Evergreen hub Strong start
Last verified 6 September 2026 Open

Showing 5 resources

Atomic Red Team (opens in a new tab)

Why: Open library of portable, ATT&CK-mapped tests that security teams can run to check whether their detections actually catch real attacker behaviours.

Evergreen hub Strong start
Last verified 6 September 2026 Open

Awesome Threat Hunting (opens in a new tab)

Why: Curated collection of hunting tools, methods and references — a practical starting point when building or refreshing a threat-hunting programme.

Evergreen hub Strong start
Last verified 6 September 2026 Open

SigmaHQ detection rules (opens in a new tab)

Why: Open library of Sigma detection rules that translate to many SIEM and EDR backends, accelerating consistent hunting and detection engineering across tools.

Evergreen hub Strong start
Last verified 6 September 2026 Open

← Back to full library