{"id":13395982,"url":"https://github.com/jivoi/awesome-ml-for-cybersecurity","last_synced_at":"2025-05-14T01:08:52.181Z","repository":{"id":37561837,"uuid":"76955905","full_name":"jivoi/awesome-ml-for-cybersecurity","owner":"jivoi","description":" :octocat: Machine Learning for Cyber Security","archived":false,"fork":false,"pushed_at":"2024-08-19T02:14:10.000Z","size":230,"stargazers_count":7225,"open_issues_count":12,"forks_count":1757,"subscribers_count":438,"default_branch":"master","last_synced_at":"2024-10-29T15:34:32.338Z","etag":null,"topics":["awesome-list","cyber-security","data-mining","machine-learning"],"latest_commit_sha":null,"homepage":null,"language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"other","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/jivoi.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE.txt","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2016-12-20T12:46:36.000Z","updated_at":"2024-10-29T15:33:21.000Z","dependencies_parsed_at":"2024-01-05T23:45:03.005Z","dependency_job_id":"a8f675af-2993-462f-9531-b1d9ee41672a","html_url":"https://github.com/jivoi/awesome-ml-for-cybersecurity","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/jivoi%2Fawesome-ml-for-cybersecurity","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/jivoi%2Fawesome-ml-for-cybersecurity/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/jivoi%2Fawesome-ml-for-cybersecurity/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/jivoi%2Fawesome-ml-for-cybersecurity/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/jivoi","download_url":"https://codeload.github.com/jivoi/awesome-ml-for-cybersecurity/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":247312063,"owners_count":20918343,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["awesome-list","cyber-security","data-mining","machine-learning"],"created_at":"2024-07-30T18:00:36.978Z","updated_at":"2025-04-08T22:19:16.144Z","avatar_url":"https://github.com/jivoi.png","language":null,"funding_links":[],"categories":["Origin Repo","Topics","\u003ca id=\"cc80626cfd1f8411b968373eb73bc4ea\"\u003e\u003c/a\u003e人工智能\u0026\u0026机器学习\u0026\u0026深度学习\u0026\u0026神经网络","Others","Other useful repositories","AISec","Data Science","Other Useful Repositories","Related Awesome Lists","Table of Contents","Others (1002)","Awesome lists","[↑](#table-of-contents)Related Awesome Lists \u003ca name=\"related-awesome-lists\"\u003e\u003c/a\u003e","Other Lists","\u003ca id=\"8c5a692b5d26527ef346687e047c5c21\"\u003e\u003c/a\u003e收集","🛠️ Helpful Repositories","Uncategorized","[↑](#Contents)Links Domain","LLM SECURITY / AI SECURITY","Unicorn","Free Courses","Application fields","Related Awesomes Lists","Programming/Comp Sci/SE Things","Forensics, Reversing, and OSINT","Security","Foundation Models, LLMs, and Agents","📚 Project Purpose","Welcome to Learn101"],"sub_categories":["\u003ca id=\"19dd474da6b715024ff44d27484d528a\"\u003e\u003c/a\u003e未分类-AI","Startup Blogs \u003ca name=\"startup-blogs\"\u003e\u003c/a\u003e","TeX Lists","Uncategorized","Research \u0026 Education","Other machine learning for cybersecurity repos","Q Learning","Secure OSes","Alignment, Safety, Security, and Trustworthiness","Machine Learning (Intermediate-Level","ML"],"readme":"# Awesome Machine Learning for Cyber Security [![Awesom](https://cdn.rawgit.com/sindresorhus/awesome/d7305f38d29fed78fa85652e3a63e154dd8e8829/media/badge.svg)](https://github.com/sindresorhus/awesome)\n\n[\u003cimg src=\"https://github.com/jivoi/awesome-ml-for-cybersecurity/raw/master/cyber-ml-logo.png\" align=\"right\" width=\"100\"\u003e](https://github.com/jivoi/awesome-ml-for-cybersecurity)\n\nA curated list of amazingly awesome tools and resources related to the use of machine learning for cyber security.\n\n## Table of Contents\n\n - [Datasets](#-datasets)\n - [Papers](#-papers)\n - [Books](#-books)\n - [Talks](#-talks)\n - [Tutorials](#-tutorials)\n - [Courses](#-courses)\n - [Miscellaneous](#-miscellaneous)\n\n## [↑](#table-of-contents) Contributing\n\nPlease read [CONTRIBUTING](./CONTRIBUTING.md) if you wish to add tools or resources.\n\n## [↑](#table-of-contents) Datasets\n\n* [HIKARI-2021 Datasets](https://zenodo.org/record/5199540)\n* [Samples of Security Related Data](http://www.secrepo.com/)\n* [DARPA Intrusion Detection Data Sets](https://www.ll.mit.edu/r-d/datasets) [ [1998](https://www.ll.mit.edu/r-d/datasets/1998-darpa-intrusion-detection-evaluation-dataset) / [1999](https://www.ll.mit.edu/r-d/datasets/1999-darpa-intrusion-detection-evaluation-dataset) ]\n* [Stratosphere IPS Data Sets](https://stratosphereips.org/category/dataset.html)\n* [Open Data Sets](http://csr.lanl.gov/data/)\n* [Data Capture from National Security Agency](http://www.westpoint.edu/crc/SitePages/DataSets.aspx)\n* [The ADFA Intrusion Detection Data Sets](https://www.unsw.adfa.edu.au/australian-centre-for-cyber-security/cybersecurity/ADFA-IDS-Datasets/)\n* [NSL-KDD Data Sets](https://github.com/defcom17/NSL_KDD)\n* [Malicious URLs Data Sets](http://sysnet.ucsd.edu/projects/url/)\n* [Multi-Source Cyber-Security Events](http://csr.lanl.gov/data/cyber1/)\n* [KDD Cup 1999 Data](http://kdd.ics.uci.edu/databases/kddcup99/kddcup99.html)\n* [Web Attack Payloads](https://github.com/foospidy/payloads)\n* [WAF Malicious Queries Data Sets](https://github.com/faizann24/Fwaf-Machine-Learning-driven-Web-Application-Firewall)\n* [Malware Training Data Sets](https://github.com/marcoramilli/MalwareTrainingSets)\n* [Aktaion Data Sets](https://github.com/jzadeh/Aktaion/tree/master/data)\n* [CRIME Database from DeepEnd Research](https://www.dropbox.com/sh/7fo4efxhpenexqp/AADHnRKtL6qdzCdRlPmJpS8Aa/CRIME?dl=0)\n* [Publicly available PCAP files](http://www.netresec.com/?page=PcapFiles)\n* [2007 TREC Public Spam Corpus](https://plg.uwaterloo.ca/~gvcormac/treccorpus07/)\n* [Drebin Android Malware Dataset](https://www.sec.cs.tu-bs.de/~danarp/drebin/)\n* [PhishingCorpus Datset](https://monkey.org/~jose/phishing/)\n* [EMBER](https://github.com/endgameinc/ember)\n* [Vizsec Research](https://vizsec.org/data/)\n* [SHERLOCK](http://bigdata.ise.bgu.ac.il/sherlock/index.html#/)\n* [Probing / Port Scan - Dataset ](https://github.com/gubertoli/ProbingDataset)\n* [Aegean Wireless Intrusion Dataset (AWID)](http://icsdweb.aegean.gr/awid/)\n* [BODMAS PE Malware Dataset](https://whyisyoung.github.io/BODMAS/)\n\n## [↑](#table-of-contents) Papers\n\n* [Generating Network Intrusion Detection Dataset Based on Real and Encrypted Synthetic Attack Traffic](https://www.mdpi.com/2076-3417/11/17/7868/htm)\n* [Fast, Lean, and Accurate: Modeling Password Guessability Using Neural Networks](https://www.usenix.org/conference/usenixsecurity16/technical-sessions/presentation/melicher)\n* [Outside the Closed World: On Using Machine Learning for Network Intrusion Detection](http://ieeexplore.ieee.org/document/5504793/?reload=true)\n* [Anomalous Payload-Based Network Intrusion Detection](https://link.springer.com/chapter/10.1007/978-3-540-30143-1_11)\n* [Malicious PDF detection using metadata and structural features](http://dl.acm.org/citation.cfm?id=2420987)\n* [Adversarial support vector machine learning](https://dl.acm.org/citation.cfm?id=2339697)\n* [Exploiting machine learning to subvert your spam filter](https://dl.acm.org/citation.cfm?id=1387709.1387716)\n* [CAMP – Content Agnostic Malware Protection](http://www.covert.io/research-papers/security/CAMP%20-%20Content%20Agnostic%20Malware%20Protection.pdf)\n* [Notos – Building a Dynamic Reputation System for DNS](http://www.covert.io/research-papers/security/Notos%20-%20Building%20a%20dynamic%20reputation%20system%20for%20dns.pdf)\n* [Kopis – Detecting malware domains at the upper dns hierarchy](http://www.covert.io/research-papers/security/Kopis%20-%20Detecting%20malware%20domains%20at%20the%20upper%20dns%20hierarchy.pdf)\n* [Pleiades – From Throw-away Traffic To Bots – Detecting The Rise Of DGA-based Malware](http://www.covert.io/research-papers/security/From%20throw-away%20traffic%20to%20bots%20-%20detecting%20the%20rise%20of%20dga-based%20malware.pdf)\n* [EXPOSURE – Finding Malicious Domains Using Passive DNS Analysis](http://www.covert.io/research-papers/security/Exposure%20-%20Finding%20malicious%20domains%20using%20passive%20dns%20analysis.pdf)\n* [Polonium – Tera-Scale Graph Mining for Malware Detection](http://www.covert.io/research-papers/security/Polonium%20-%20Tera-Scale%20Graph%20Mining%20for%20Malware%20Detection.pdf)\n* [Nazca – Detecting Malware Distribution in Large-Scale Networks](http://www.covert.io/research-papers/security/Nazca%20-%20%20Detecting%20Malware%20Distribution%20in%20Large-Scale%20Networks.pdf)\n* [PAYL – Anomalous Payload-based Network Intrusion Detection](http://www.covert.io/research-papers/security/PAYL%20-%20Anomalous%20Payload-based%20Network%20Intrusion%20Detection.pdf)\n* [Anagram – A Content Anomaly Detector Resistant to Mimicry Attacks](http://www.covert.io/research-papers/security/Anagram%20-%20A%20Content%20Anomaly%20Detector%20Resistant%20to%20Mimicry%20Attack.pdf)\n* [Applications of Machine Learning in Cyber Security](https://www.researchgate.net/publication/283083699_Applications_of_Machine_Learning_in_Cyber_Security)\n* [Data Mining для построения систем обнаружения сетевых атак (RUS)](http://vak.ed.gov.ru/az/server/php/filer.php?table=att_case\u0026fld=autoref\u0026key%5B%5D=100003407)\n* [Выбор технологий Data Mining для систем обнаружения вторжений в корпоративную сеть (RUS)](http://engjournal.ru/articles/987/987.pdf)\n* [Нейросетевой подход к иерархическому представлению компьютерной сети в задачах информационной безопасности (RUS)](http://engjournal.ru/articles/534/534.pdf)\n* [Методы интеллектуального анализа данных и обнаружение вторжений (RUS)](http://vestnik.sibsutis.ru/uploads/1459329553_3576.pdf)\n* [Dimension Reduction in Network Attacks Detection Systems](http://elib.bsu.by/bitstream/123456789/120105/1/v17no3p284.pdf)\n* [Rise of the machines: Machine Learning \u0026 its cyber security applications](https://www.nccgroup.trust/globalassets/our-research/uk/whitepapers/2017/rise-of-the-machines-preliminaries-wp-new-template-final_web.pdf)\n* [Machine Learning in Cyber Security: Age of the Centaurs](https://go.recordedfuture.com/hubfs/white-papers/machine-learning.pdf)\n* [Automatically Evading Classifiers A Case Study on PDF Malware Classifiers](https://www.cs.virginia.edu/~evans/pubs/ndss2016/)\n* [Weaponizing Data Science for Social Engineering — Automated E2E Spear Phishing on Twitter](https://www.blackhat.com/docs/us-16/materials/us-16-Seymour-Tully-Weaponizing-Data-Science-For-Social-Engineering-Automated-E2E-Spear-Phishing-On-Twitter.pdf)\n* [Machine Learning: A Threat-Hunting Reality Check](https://s3-eu-central-1.amazonaws.com/evermade-fsecure-assets/wp-content/uploads/2019/09/17153425/countercept-whitepaper-machine-learning.pdf)\n* [Neural Network-based Graph Embedding for Cross-Platform Binary Code Similarity Detection](https://arxiv.org/abs/1708.06525)\n* [Practical Secure Aggregation for Privacy-Preserving Machine Learning](https://eprint.iacr.org/2017/281.pdf)\n* [DeepLog: Anomaly Detection and Diagnosis from System Logs through Deep Learning](https://acmccs.github.io/papers/p1285-duA.pdf)\n* [eXpose: A Character-Level Convolutional Neural Network with Embeddings For Detecting Malicious URLs, File Paths and Registry Keys](https://arxiv.org/pdf/1702.08568.pdf)\n* [Big Data Technologies for Security Event Correlation Based on Event Type Accounting (RUS)](http://cyberrus.com/wp-content/uploads/2018/02/2-16-524-17_1.-Kotenko.pdf)\n* [Investigation of The Use of Neural Networks for Detecting Low-Intensive Ddоs-Atak of Applied Level (RUS)](http://cyberrus.com/wp-content/uploads/2018/02/23-29-524-17_3.-Tarasov.pdf)\n* [Detecting Malicious PowerShell Commands using Deep Neural Networks](https://arxiv.org/pdf/1804.04177.pdf)\n* [Machine Learning DDoS Detection for Consumer Internet of Things Devices](https://arxiv.org/pdf/1804.04159.pdf)\n* [Anomaly Detection in Computer System\nby Intellectual Analysis of System Journals (RUS)](http://cyberrus.com/wp-content/uploads/2018/06/33-43-226-18_4.-Sheluhin.pdf)\n* [EMBER: An Open Dataset for Training Static PE Malware Machine Learning Models](https://arxiv.org/pdf/1804.04637.pdf)\n* [A state-of-the-art survey of malware detection approaches using data mining techniques.](https://link.springer.com/article/10.1186/s13673-018-0125-x)\n* [Investigation of malicious portable executable file detection on network using supervised learning techniques.](https://www.researchgate.net/publication/318665164_Investigation_of_malicious_portable_executable_file_detection_on_the_network_using_supervised_learning_techniques)\n* [Machine Learning in Cybersecurity: A Guide](https://resources.sei.cmu.edu/library/asset-view.cfm?assetid=633583)\n* [Outside the Closed World: On Using Machine Learning For Network Intrusion Detection](https://personal.utdallas.edu/~muratk/courses/dmsec_files/oakland10-ml.pdf)\n* [Machine Learning Based Network Vulnerability Analysis of Industrial Internet of Things](https://arxiv.org/abs/1911.05771)\n* [Hopper: Modeling and Detecting Lateral Movement](https://arxiv.org/pdf/2105.13442.pdf1)\n* [Finding Effective Security Strategies through Reinforcement Learning and Self-Play](https://arxiv.org/abs/2009.08120)\n* [Intrusion Prevention through Optimal Stopping](https://arxiv.org/abs/2111.00289)\n* [Cyber Risk Management: AI-Generated Warnings of Threats (Thesis)](https://stacks.stanford.edu/file/druid:mw190gm2975/faberSubmission-augmented.pdf)\n\n\n\n## [↑](#table-of-contents) Books\n\n* [Data Mining and Machine Learning in Cybersecurity](https://www.amazon.com/Data-Mining-Machine-Learning-Cybersecurity/dp/1439839425)\n* [Machine Learning and Data Mining for Computer Security](https://www.amazon.com/Machine-Learning-Mining-Computer-Security/dp/184628029X)\n* [Network Anomaly Detection: A Machine Learning Perspective](https://www.amazon.com/Network-Anomaly-Detection-Learning-Perspective/dp/1466582081)\n* [Machine Learning and Security: Protecting Systems with Data and Algorithms](https://www.amazon.com/Machine-Learning-Security-Protecting-Algorithms/dp/1491979909)\n* [Introduction To Artificial Intelligence For Security Professionals](https://github.com/cylance/IntroductionToMachineLearningForSecurityPros/blob/master/IntroductionToArtificialIntelligenceForSecurityProfessionals_Cylance.pdf)\n* [Mastering Machine Learning for Penetration Testing](https://www.packtpub.com/networking-and-servers/mastering-machine-learning-penetration-testing)\n* [Malware Data Science: Attack Detection and Attribution](https://nostarch.com/malwaredatascience)\n\n## [↑](#table-of-contents) Talks\n\n* [Using Machine Learning to Support Information Security](https://www.youtube.com/watch?v=tukidI5vuBs)\n* [Defending Networks with Incomplete Information](https://www.youtube.com/watch?v=36IT9VgGr0g)\n* [Applying Machine Learning to Network Security Monitoring](https://www.youtube.com/watch?v=vy-jpFpm1AU)\n* [Measuring the IQ of your Threat Intelligence Feeds](https://www.youtube.com/watch?v=yG6QlHOAWiE)\n* [Data-Driven Threat Intelligence: Metrics On Indicator Dissemination And Sharing](https://www.youtube.com/watch?v=6JMEKnes-w0)\n* [Applied Machine Learning for Data Exfil and Other Fun Topics](https://www.youtube.com/watch?v=dGwH7m4N8DE)\n* [Secure Because Math: A Deep-Dive on ML-Based Monitoring](https://www.youtube.com/watch?v=TYVCVzEJhhQ)\n* [Machine Duping 101: Pwning Deep Learning Systems](https://www.youtube.com/watch?v=JAGDpJFFM2A)\n* [Delta Zero, KingPhish3r – Weaponizing Data Science for Social Engineering](https://www.youtube.com/watch?v=l7U0pDcsKLg)\n* [Defeating Machine Learning What Your Security Vendor Is Not Telling You](https://www.youtube.com/watch?v=oiuS1DyFNd8)\n* [CrowdSource: Crowd Trained Machine Learning Model for Malware Capability Det](https://www.youtube.com/watch?v=u6a7afsD39A)\n* [Defeating Machine Learning: Systemic Deficiencies for Detecting Malware](https://www.youtube.com/watch?v=sPtbDUJjhbk)\n* [Packet Capture Village – Theodora Titonis – How Machine Learning Finds Malware](https://www.youtube.com/watch?v=2cQRSPFSY-s)\n* [Build an Antivirus in 5 Min – Fresh Machine Learning #7. A fun video to watch](https://www.youtube.com/watch?v=iLNHVwSu9EA\u0026t=245s)\n* [Hunting for Malware with Machine Learning](https://www.youtube.com/watch?v=zT-4zdtvR30)\n* [Machine Learning for Threat Detection](https://www.youtube.com/watch?v=qVwktOa-F34)\n* [Machine Learning and the Cloud: Disrupting Threat Detection and Prevention](https://www.youtube.com/watch?v=fRklX97iGIw)\n* [Fraud detection using machine learning \u0026 deep learning](https://www.youtube.com/watch?v=gHtN4jU69W0)\n* [The Applications Of Deep Learning On Traffic Identification](https://www.youtube.com/watch?v=yZ-Y1WCM0lc)\n* [Defending Networks With Incomplete Information: A Machine Learning Approach](https://www.youtube.com/watch?v=_0CRSF6yPB4)\n* [Machine Learning \u0026 Data Science](https://vimeo.com/112702666)\n* [Advances in Cloud-Scale Machine Learning for Cyber-Defense](https://www.youtube.com/watch?v=skSIIvvZFIk)\n* [Applied Machine Learning: Defeating Modern Malicious Documents](https://www.youtube.com/watch?v=ZAuCEgA3itI)\n* [Automated Prevention of Ransomware with Machine Learning and GPOs](https://www.rsaconference.com/writable/presentations/file_upload/spo2-t11_automated-prevention-of-ransomware-with-machine-learning-and-gpos.pdf)\n* [Learning to Detect Malware by Mining the Security Literature](https://www.usenix.org/conference/enigma2017/conference-program/presentation/dumitras)\n* [Clarence Chio and Anto Joseph - Practical Machine Learning in Infosecurity](https://conference.hitb.org/hitbsecconf2017ams/materials/D1T3%20-%20Clarence%20Chio%20and%20Anto%20Joseph%20-%20Practical%20Machine%20Learning%20in%20Infosecurity.pdf)\n* [Advances in Cloud-Scale Machine Learning for Cyberdefense](https://www.youtube.com/watch?v=6Slj2FV9CLA)\n* [Machine Learning-Based Techniques For Network Intrusion Detection](https://www.youtube.com/watch?v=-EUJgpiJ8Jo)\n* [Practical Machine Learning in Infosec](https://www.youtube.com/watch?v=YF2dm6GZf2U)\n* [AI and Security](https://www.microsoft.com/en-us/research/wp-content/uploads/2017/07/AI_and_Security_Dawn_Song.pdf)\n* [AI in InfoSec](https://vimeo.com/230502013)\n* [Beyond the Blacklists: Detecting Malicious URL Through Machine Learning](https://www.youtube.com/watch?v=Kd3svc9HZ0Y)\n* [Machine Learning Fueled Cyber Threat Hunting](https://www.youtube.com/watch?v=c-c-IQ5pFXw)\n* [Weaponizing Machine Learning: Humanity Was Overrated](https://www.youtube.com/watch?v=QbX7BhjOOvY)\n* [Machine Learning, Offense, and the future of Automation](https://www.youtube.com/watch?v=BWFdxAG_TGk)\n* [Bringing Red vs. Blue to Machine Learning](https://www.youtube.com/watch?v=e5O0Oxt5dYI)\n* [Explaining Machine Learning with Azure and the Titanic Dataset](https://www.youtube.com/watch?v=x1DfjUEYm0k)\n* [Using Machines to exploit Machines](https://www.youtube.com/watch?v=VuLvzL-WbBQ)\n* [Analyze active directory event logs using visualize and ML](https://www.youtube.com/watch?v=ISbbzaCGBns)\n* [Hardening Machine Learning Defenses Against Adversarial Attacks](https://www.youtube.com/watch?v=CAwua_lugV8)\n* [Deep Neural Networks for Hackers: Methods, Applications, and Open Source Tools](https://www.youtube.com/watch?v=fKJ8sTi6H88)\n* [ML in the daily work of a threat hunter](https://www.youtube.com/watch?v=vWMRVhDCpao)\n* [The Real Deal About AI: ML for CyberSecurity - Josh Fu](https://www.youtube.com/watch?v=RzakalH1eL8)\n* [Automated Detection of Software Vulnerabilities Using Deep-Learning](https://www.youtube.com/watch?v=tpzT8ppx5-s)\n* [Building and Breaking a Machine Learning System - Johann Rehberger](https://www.youtube.com/watch?v=-SV80sIBhqY)\n* [Vulnerabilities of Machine Learning Infrastructure - Sergey Gordeychik](https://www.youtube.com/watch?v=5bWyY3kocdE)\n\n## [↑](#table-of-contents) Tutorials\n\n* [Machine Learning based Password Strength Classification](http://web.archive.org/web/20170606022743/http://fsecurify.com/machine-learning-based-password-strength-checking/)\n* [Using Machine Learning to Classify Packet Captures](https://medium.com/@siddharthsatpathy.ss/introducing-flowmeter-97e0507862b6)\n* [Using Machine Learning to Detect Malicious URLs](http://web.archive.org/web/20170514093208/http://fsecurify.com/using-machine-learning-detect-malicious-urls/)\n* [Using deep learning to break a Captcha system](https://deepmlblog.wordpress.com/2016/01/03/how-to-break-a-captcha-system/)\n* [Data mining for network security and intrusion detection](https://www.r-bloggers.com/data-mining-for-network-security-and-intrusion-detection/)\n* [Applying Machine Learning to Improve Your Intrusion Detection System](https://securityintelligence.com/applying-machine-learning-to-improve-your-intrusion-detection-system/)\n* [Analyzing BotNets with Suricata \u0026 Machine Learning](http://blogs.splunk.com/2017/01/30/analyzing-botnets-with-suricata-machine-learning/)\n* [fWaf – Machine learning driven Web Application Firewall](http://web.archive.org/web/20170706222016/http://fsecurify.com/fwaf-machine-learning-driven-web-application-firewall/)\n* [Deep Session Learning for Cyber Security](https://blog.cyberreboot.org/deep-session-learning-for-cyber-security-e7c0f6804b81#.eo2m4alid)\n* [DMachine Learning for Malware Detection](http://resources.infosecinstitute.com/machine-learning-malware-detection/)\n* [ShadowBrokers Leak: A Machine Learning Approach](https://marcoramilli.blogspot.ru/2017/04/shadowbrokers-leak-machine-learning.html)\n* [Practical Machine Learning in Infosec - Virtualbox Image and Stuff](https://docs.google.com/document/d/1v4plS1EhLBfjaz-9GHBqspTH7vnrJfqLrLjeP9k9i9A/edit)\n* [A Machine-Learning Toolkit for Large-scale eCrime Forensics](http://blog.trendmicro.com/trendlabs-security-intelligence/defplorex-machine-learning-toolkit-large-scale-ecrime-forensics/)\n* [WebShells Detection by Machine Learning](https://github.com/lcatro/WebShell-Detect-By-Machine-Learning)\n* [Building Machine Learning Models for the SOC](https://www.fireeye.com/blog/threat-research/2018/06/build-machine-learning-models-for-the-soc.html)\n* [Detecting Web Attacks With Recurrent Neural Networks](https://aivillage.org/posts/detecting-web-attacks-rnn/)\n* [Machine Learning for Red Teams, Part 1](https://silentbreaksecurity.com/machine-learning-for-red-teams-part-1/)\n* [Detecting Reverse Shell with Machine Learning](https://www.cyberbit.com/blog/endpoint-security/detecting-reverse-shell-with-machine-learning/)\n* [Obfuscated Command Line Detection Using Machine Learning](https://www.fireeye.com/blog/threat-research/2018/11/obfuscated-command-line-detection-using-machine-learning.html)\n* [Обнаружение веб-атак с помощью рекуррентных нейронных сетей (RUS)](https://habr.com/ru/company/pt/blog/439202/)\n* [Clear and Creepy Danger of Machine Learning: Hacking Passwords](https://towardsdatascience.com/clear-and-creepy-danger-of-machine-learning-hacking-passwords-a01a7d6076d5)\n* [Discovering anomalous patterns based on parent-child process relationships](https://www.elastic.co/cn/blog/discovering-anomalous-patterns-based-on-parent-child-process-relationships)\n* [Machine Learning for Detecting Phishing Websites](https://faizanahmad.tech/blog/2020/02/phishytics-machine-learning-for-phishing-websites-detection/)\n* [Password Hunting with ML in Active Directory](https://blog.hunniccyber.com/password-hunting-with-ml-in-active-directory/)\n* [Как самому разработать систему обнаружения компьютерных атак на основе машинного обучения (RUS)](https://habr.com/ru/post/538296/)\n\n## [↑](#table-of-contents) Courses\n\n* [Data Mining for Cyber Security by Stanford](http://web.stanford.edu/class/cs259d/)\n* [Data Science and Machine Learning for Infosec](http://www.pentesteracademy.com/course?id=30)\n* [Cybersecurity Data Science on Udemy](https://www.udemy.com/cybersecurity-data-science)\n* [Machine Learning for Red Team Hackers on Udemy](https://www.udemy.com/course/machine-learning-for-red-team-hackers/)\n* [Machine Learning for Security](https://security.kiwi/docs/introduction/)\n\n## [↑](#table-of-contents) Miscellaneous\n\n* [System predicts 85 percent of cyber-attacks using input from human experts](http://news.mit.edu/2016/ai-system-predicts-85-percent-cyber-attacks-using-input-human-experts-0418)\n* [Machine learning tool for classification of packets by looking at packet headers](https://github.com/deepfence/FlowMeter)\n* [A list of open source projects in cyber security using machine learning](http://www.mlsec.org/)\n* [Source code about machine learning and security](https://github.com/13o-bbr-bbq/machine_learning_security)\n* [Source code for Mastering Machine Learning for Penetration Testing](https://github.com/PacktPublishing/Mastering-Machine-Learning-for-Penetration-Testing)\n* [Convolutional neural network for analyzing pentest screenshots](https://github.com/BishopFox/eyeballer)\n* [Big Data and Data Science for Security and Fraud Detection](http://www.kdnuggets.com/2015/12/big-data-science-security-fraud-detection.html)\n* [StringSifter - a machine learning tool that ranks strings based on their relevance for malware analysis](https://github.com/fireeye/stringsifter)\n\n## License\n\n![cc license](http://i.creativecommons.org/l/by-sa/4.0/88x31.png)\n\nThis work is licensed under a [Creative Commons Attribution-ShareAlike 4.0 International](http://creativecommons.org/licenses/by-sa/4.0/) license.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fjivoi%2Fawesome-ml-for-cybersecurity","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fjivoi%2Fawesome-ml-for-cybersecurity","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fjivoi%2Fawesome-ml-for-cybersecurity/lists"}