Ashfaaq98/awesome-genai-cyberhub

A curated list of LLM driven Cyber security Resources

57

33 commits

updated Sep 19, 2026

See the code

README

Awesome GitHub license GitHub Stars GitHub Forks PRs Welcome

⭐ If you find Awesome GenAI CyberHub useful, please consider giving it a ⭐ to help it grow and reach more people! ⭐

Awesome GenAI CyberHub Banner

🚀 Awesome GenAI CyberHub ✨

A curated collection of the best LLM-based resources for cybersecurity practitioners, researchers, and enthusiasts.

Welcome to Awesome GenAI CyberHub, your focused repository for Agentic AI Large Language Model (LLM) applications in cybersecurity. Below you’ll find links to articles, papers, PoCs, frameworks, datasets, and community projects organized by topic, making it easy to navigate the ever-expanding landscape of LLM‑powered security.


📋 Table of Contents


About

This repo aggregates the most impactful LLM‑centric work in cybersecurity, grouped by real‑world problem domains. Whether you’re building an autonomous SOC analyst, crafting threat profiles, or automating detection rule writing or exploring offensive workflows like red teaming, jump straight to the topic area that matters most.

Topic-Based Directory Structure

awesome-genai-cyberhub/
├── Resources/
   ├── ai-soc/                # Agentic AI for SOC workflows
   ├── cti/                   # Cyber Threat Intelligence via LLMs
   ├── malware-analysis/      # LLM driven malware Analysis
   ├── vulnerability-analysis/ # LLMs in vuln discovery
   ├── detection-engineering/ # Generative AI rule writing & alerts
   ├── threat-hunting/        # AI-driven threat hunting & hypothesis gen
   ├── phishing-analysis/     # Phishing Analysis & detection
   ├── honeypots/             # LLM-driven honeypot frameworks
   ├── offensive-security/    # Offensive security workflows
   └── digital-forensics/     # LLM applications in Digital Forensics


Resource Listings

🏅 General


🥇 MCP Servers (Model Context Protocol)

This section covers resources related to Model Context Protocol (MCP) servers for security. These systems facilitate more complex and coordinated AI-driven security operations.

  • 🖥️ ORKL MCP Server [Github] - A Model Context Protocol (MCP) server for querying the ORKL API.
  • 🖥️ VirusTotal MCP Server [Smithery] - A Model Context Protocol (MCP) server for querying the VirusTotal API.
  • 🖥️ OTX Alien Vault MCP Server [Smithery] - A Model Context Protocol (MCP) server for querying the Alien Vault API.
  • 🖥️ RSTCloud MCP Server [Smithery] - A Model Context Protocol (MCP) server for querying the RSTCloud API.
  • 🖥️ OpenCTI MCP Server [Github] - A Model Context Protocol (MCP) server for orchestrating and querying OpenCTI via LLM agents.
  • 🖥️ External Reconnaissance MCP Server [Github] - A Model Context Protocol (MCP) server for performing active external reconnaissance activities against a domain.

🥈 Models


🥉 Benchmarks & Datasets


How to Navigate & Contribute

  1. Browse the topic folder that matches your use case.
  2. Dive into its README for detailed descriptions and annotations, including resource type tags.
  3. To add a resource, open a PR in the appropriate folder’s README.md.
  4. Follow existing formatting and include the identifier tag (e.g., [Paper], [Blog], [GitHub], [Tool], [Video], [Model], [Dataset]).

📘 See CONTRIBUTING.md for full guidelines, style tips, and how to submit your PR.


License

Distributed under the MIT License. See MIT License for details.

Contact

For suggestions or PRs, open an issue or reach out to me at ashfaaqf@proton.me .

ai
awesome-list
cybersecurity
genai-hub
llm

Contributors

Ashfaaq98

30 commits

AshfaaqF

3 commits

Ashfaaq98/awesome-genai-cyberhub

A curated list of LLM driven Cyber security Resources

57

33 commits

updated Sep 19, 2026

See the code

README

Awesome GitHub license GitHub Stars GitHub Forks PRs Welcome

⭐ If you find Awesome GenAI CyberHub useful, please consider giving it a ⭐ to help it grow and reach more people! ⭐

Awesome GenAI CyberHub Banner

🚀 Awesome GenAI CyberHub ✨

A curated collection of the best LLM-based resources for cybersecurity practitioners, researchers, and enthusiasts.

Welcome to Awesome GenAI CyberHub, your focused repository for Agentic AI Large Language Model (LLM) applications in cybersecurity. Below you’ll find links to articles, papers, PoCs, frameworks, datasets, and community projects organized by topic, making it easy to navigate the ever-expanding landscape of LLM‑powered security.


📋 Table of Contents


About

This repo aggregates the most impactful LLM‑centric work in cybersecurity, grouped by real‑world problem domains. Whether you’re building an autonomous SOC analyst, crafting threat profiles, or automating detection rule writing or exploring offensive workflows like red teaming, jump straight to the topic area that matters most.

Topic-Based Directory Structure

awesome-genai-cyberhub/
├── Resources/
   ├── ai-soc/                # Agentic AI for SOC workflows
   ├── cti/                   # Cyber Threat Intelligence via LLMs
   ├── malware-analysis/      # LLM driven malware Analysis
   ├── vulnerability-analysis/ # LLMs in vuln discovery
   ├── detection-engineering/ # Generative AI rule writing & alerts
   ├── threat-hunting/        # AI-driven threat hunting & hypothesis gen
   ├── phishing-analysis/     # Phishing Analysis & detection
   ├── honeypots/             # LLM-driven honeypot frameworks
   ├── offensive-security/    # Offensive security workflows
   └── digital-forensics/     # LLM applications in Digital Forensics


Resource Listings

🏅 General


🥇 MCP Servers (Model Context Protocol)

This section covers resources related to Model Context Protocol (MCP) servers for security. These systems facilitate more complex and coordinated AI-driven security operations.

  • 🖥️ ORKL MCP Server [Github] - A Model Context Protocol (MCP) server for querying the ORKL API.
  • 🖥️ VirusTotal MCP Server [Smithery] - A Model Context Protocol (MCP) server for querying the VirusTotal API.
  • 🖥️ OTX Alien Vault MCP Server [Smithery] - A Model Context Protocol (MCP) server for querying the Alien Vault API.
  • 🖥️ RSTCloud MCP Server [Smithery] - A Model Context Protocol (MCP) server for querying the RSTCloud API.
  • 🖥️ OpenCTI MCP Server [Github] - A Model Context Protocol (MCP) server for orchestrating and querying OpenCTI via LLM agents.
  • 🖥️ External Reconnaissance MCP Server [Github] - A Model Context Protocol (MCP) server for performing active external reconnaissance activities against a domain.

🥈 Models


🥉 Benchmarks & Datasets


How to Navigate & Contribute

  1. Browse the topic folder that matches your use case.
  2. Dive into its README for detailed descriptions and annotations, including resource type tags.
  3. To add a resource, open a PR in the appropriate folder’s README.md.
  4. Follow existing formatting and include the identifier tag (e.g., [Paper], [Blog], [GitHub], [Tool], [Video], [Model], [Dataset]).

📘 See CONTRIBUTING.md for full guidelines, style tips, and how to submit your PR.


License

Distributed under the MIT License. See MIT License for details.

Contact

For suggestions or PRs, open an issue or reach out to me at ashfaaqf@proton.me .

ai
awesome-list
cybersecurity
genai-hub
llm

Contributors

Ashfaaq98

30 commits

AshfaaqF

3 commits