Skip to content

A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters to share knowledge, collaborate on techniques, and advance the field of threat hunting.

Notifications You must be signed in to change notification settings

THORCollective/HEARTH

Folders and files

NameName
Last commit message
Last commit date
Mar 10, 2025
Nov 21, 2024
Nov 1, 2024
Mar 14, 2025
Jan 17, 2025
Nov 10, 2024
Mar 19, 2025
Mar 17, 2025
Mar 10, 2025
Jan 28, 2025
Mar 13, 2025
Mar 11, 2025

Repository files navigation

πŸ”₯ Hunting Exchange And Research Threat Hub (HEARTH) πŸ”₯

HEARTH Logo

A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters to share knowledge, collaborate on techniques, and advance the field of threat hunting.

HEARTH incorporates ideas for three distinct types of hunts classified by the PEAK Threat Hunting Framework:

  • Flames: Hypothesis-driven investigations with clear, testable hypotheses
  • Embers: Environment baselining and exploratory analysis
  • Alchemy: Model-assisted and algorithmic approaches to threat detection

πŸ”₯ Why

Generating effective hypotheses and ideas for threat hunting is hard. HEARTH provides a collaborative environment where hunters can share, develop, and refine their methodologies while building a comprehensive knowledge base for the security community.

πŸ”₯ Goals

  • Encourage collaboration
  • Inspire threat hunters with practical and theoretical hunting ideas

πŸ”₯ Repository Structure

HEARTH/
β”œβ”€β”€ Flames/              # Hypothesis-Driven hunts
β”œβ”€β”€ Embers/              # Baseline Analysis
β”œβ”€β”€ Alchemy/             # Model-Assisted & Algorithmic Hunting
β”œβ”€β”€ Forge/               # Development space
β”œβ”€β”€ Kindling/            # Resources & Templates
β”œβ”€β”€ Keepers/             # Guidelines & Standards
└── Assets/              # Images & Logos

πŸ”₯ How to Contribute to HEARTH

We welcome contributions to the Hunting Exchange And Research Threat Hub! Contributing is simple:

πŸ”₯ Submit a Hunt Idea

We welcome contributions from all threat hunters! To share your ideas:

  1. Go to Submit New Issue
  2. Select "HEARTH Hunt Submission Form"
  3. Fill out the required information about your hunt
  4. Submit for review

See our Contribution Guidelines for detailed instructions and requirements.

Important

Approved HEARTH Hunt submissions receive an official hunt number, community recognition, and integration into the HEARTH repository.

πŸ”₯ Other Contributions

πŸ”¨ The Forge

Got a half-baked idea or something that needs work? Submit it to The Forge, where we collect and refine early-stage threat hunting ideas for all hunt types.

🧯 Have feedback or suggestions?

Use our standard HEARTH Issue Template for:

  • Bug reports
  • Feature requests
  • General feedback

πŸ”₯ Community Roles

HEARTH Keepers

Repository maintainers and reviewers who:

  • Review submissions
  • Maintain quality standards
  • Guide community development
  • Facilitate collaboration

HEARTH Crafters

Regular contributors who:

  • Submit hunt ideas
  • Participate in reviews
  • Support the community
  • Share knowledge

HEARTH Apprentices

New members who:

  • Learn methodologies
  • Make initial contributions (see the Forge)
  • Engage with community

Additional Resources

  • πŸͺ΅ Resources Guide: A curated collection of threat intelligence sources, security blogs, research papers, and tools to help generate and refine hunt ideas.
  • Hunt Generation Template: Once you've got your idea, use this to plan out your hunt in detail.
  • Hunt Review Template: After your hunt, use this to capture all key findings and ensure nothing is missed when sharing your results.

Made with πŸ”₯ by the HEARTH team:

Lauren 🀠 x:@jotunvillur / LI:Lauren Proehl
Sydney πŸ‹οΈβ€β™€οΈ x:@letswastetime / LI:Sydney Marrone
John πŸ’€ x:@AngryInfoSecGuy / LI:John Grageda


πŸ”₯ **Keep the HEARTH burning!** πŸ”₯

About

A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters to share knowledge, collaborate on techniques, and advance the field of threat hunting.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published