Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
$ npx skills add Yamato-Security/hayabusaAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
$ npx skills add Yamato-Security/hayabusaOpen-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.
$ npx skills add beenuar/AiSOCIntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
$ npx skills add certtools/intelmqList of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
$ npx skills add toniblyx/my-arsenal-of-aws-security-toolsOpen Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.
$ npx skills add mikeroyal/Open-Source-Security-GuideAssemblyLine 4: File triage and malware analysis
$ npx skills add CybercentreCanada/assemblylineVolatility 3.0 development
$ npx skills add volatilityfoundation/volatility3Digging Deeper....
$ npx skills add Velocidex/velociraptorThe Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.
$ npx skills add sleuthkit/sleuthkitCRADLE is a collaborative platform for Cyber Threat Intelligence analysts. It streamlines threat investigations with integrated note-taking, automated data linking, interactive visualizations, and robust access control. Enhance your CTI workflow from analysis to reporting—all in one secure space.
$ npx skills add prodaft/cradleMonzo's real-time incident response and reporting tool ⚡️
$ npx skills add monzo/responseIncident Response Documentation made easy. Developed by Incident Responders for Incident Responders
$ npx skills add cyb3rfox/Aurora-Incident-ResponseA simple-to-use IR (incident response) case management tool for tracking and documenting investigations.
$ npx skills add WithSecureLabs/KanvasCollaborative Incident Response platform
$ npx skills add dfir-iris/iris-webCortex: a Powerful Observable Analysis and Active Response Engine
$ npx skills add TheHive-Project/CortexUAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It automates the collection of artifacts from a wide range of Unix-like systems, including AIX, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris.
$ npx skills add tclahr/uacHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Incident Playbook if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.