HEARTH THOR Collective
Contribute

Got a hunt?
Light it up.

HEARTH is built by working hunters. Paste a CTI link and our pipeline drafts a hunt hypothesis automatically — or write one from scratch and open a PR. Every submission sharpens the collective edge.

Recommended

Submit a CTI link

Drop a threat intelligence report URL below. We'll open a GitHub issue pre-filled with the source so a Keeper can run the CTI pipeline and draft the hunt hypothesis for you.

Blog post, PDF, advisory, or any public threat intelligence source.
or submit directly
↗
Create CTI issue on GitHub
Opens the issue template directly — fill in the fields yourself.
How the CTI pipeline works
01
You paste a link
Any public CTI source — blog, PDF, advisory, or research paper.
02
We open an issue
A GitHub issue is created with the source pre-filled, routed to the Keepers.
03
Pipeline drafts the hunt
Our CTI pipeline extracts TTPs and drafts a hypothesis in HEARTH format.
04
Keepers review & merge
A Keeper validates the draft, credits you, and merges it to the library.