Open-source distributed security control plane for asynchronous telemetry, cross-application threat correlation, deterministic detection, and cryptographically authenticated containment.
-
Updated
Sep 20, 2026 - Rust
Open-source distributed security control plane for asynchronous telemetry, cross-application threat correlation, deterministic detection, and cryptographically authenticated containment.
Threat correlation and clustering framework for Microsoft Defender incidents with MITRE ATT&CK mapping
Multi-agent SecOps research playground — red/blue team simulation built on phantom-mesh. MCP server exposing recon/exploit/detect/respond tools to Claude Code, Cursor, or any MCP-compatible runtime.
To associate your repository with the threat-correlation topic, visit your repo's landing page and select "manage topics."