Skip to content
@opencybersecurityalliance

Open Cybersecurity Alliance

The Open Cybersecurity Alliance (OCA) fosters a cybersecurity ecosystem for exchanging information, orchestrated responses, etc. OCA is an OASIS Open Project.

Welcome to the Open Cybersecurity Alliance (OCA)

The Open Cybersecurity Alliance (OCA) is an OASIS Open Project, fostering an open cybersecurity ecosystem, where products from all vendors and software publishers can freely exchange information, insights, analytics, and orchestrated response, via commonly developed code and tooling, using mutually agreed upon technologies, data standards, and procedures.

For more information about OCA, visit our project website.

To learn more about how this Open Source project is governed, who our sponsors are, and who is serving on our Project Governing Board and Technical Steering Committee, check out the OASIS Open Project repository.

OCA sub-projects

OCA is an incubator for a growing number of Open Source projects. Check out our existing sub-projects:

Get involved!

Are you interested in learning more about OCA or would you like to contribute to our projects? Here are a few starting points:

Pinned Loading

  1. oasis-open-project Public

    Information relating to the governance of the Open Cybersecurity Alliance (OCA) OASIS Open Project. https://github.com/opencybersecurityalliance

    26 8

  2. stix-shifter Public

    This project consists of an open source library allowing software to connect to data repositories using STIX Patterning, and return results as STIX Observations.

    Python 241 233

  3. kestrel-lang Public

    Kestrel threat hunting language: building reusable, composable, and shareable huntflows across different data sources and threat intel.

    Python 309 52

  4. kestrel-huntbook Public

    This repository hosts community contributed Kestrel huntflows (.hf) and huntbooks (.ipynb)

    Jupyter Notebook 32 11

  5. PACE Public

    Posture Attribute Collection and Evaluation

    23 5

  6. oca-iob Public

    Augmentation to Machine Readable CTI

    Python 30 10

Repositories

Showing 10 of 26 repositories
  • stix-shifter Public

    This project consists of an open source library allowing software to connect to data repositories using STIX Patterning, and return results as STIX Observations.

    Python 241 233 30 14 Updated Mar 12, 2025
  • oxa Public

    OXA - Open XDR architecture

    5 2 0 0 Updated Mar 11, 2025
  • oca-iob Public

    Augmentation to Machine Readable CTI

    Python 30 10 2 0 Updated Mar 11, 2025
  • casp Public
    Jupyter Notebook 19 15 2 0 Updated Feb 18, 2025
  • 0 0 0 1 Updated Jan 8, 2025
  • cacao-roaster Public

    A web application for generating, parsing and validating, manipulating, and visualizing CACAO v2.0 playbooks.

    TypeScript 28 11 26 1 Updated Dec 21, 2024
  • 11 CC-BY-4.0 7 6 1 Updated Dec 13, 2024
  • kestrel-as-a-service Public

    Kestrel container and deployable cloud-managed hunting service for large organizations

    Shell 6 Apache-2.0 2 2 0 Updated Dec 7, 2024
  • oasis-open-project Public

    Information relating to the governance of the Open Cybersecurity Alliance (OCA) OASIS Open Project. https://github.com/opencybersecurityalliance

    26 8 1 4 Updated Nov 27, 2024
  • documentation Public

    OCA-wide documentation shared by all sub-projects and repositories

    33 15 11 0 Updated Oct 31, 2024