M507/AI-SOC-Agent

Blackhat 2025 presentation and codebase: AI SOC agent & MCP server for automated security investigation, alert triage, and incident response. Integrates with ELK, IRIS, and other platforms.

36
/ 100
Emerging

SamiGPT is an AI-powered platform designed for Security Operations Centers (SOC) that automates the investigation and response to security alerts. It takes in security alerts from your SIEM and EDR systems, analyzes them using AI agents, and outputs categorized cases, incident summaries, and automated responses (like isolating an endpoint or enriching threat intelligence). Security analysts, incident responders, and SOC managers would use this to streamline their daily workflows.

Use this if you need to automate alert triage, incident investigation, and response across multiple security tools like SIEM, EDR, and case management systems, to reduce manual workload and speed up resolution.

Not ideal if you're looking for a standalone security product that requires no integration or technical setup, as this project requires connecting to existing security infrastructure and potentially configuring AI tools.

Security Operations Incident Response Threat Intelligence Security Automation Case Management
No Package No Dependents
Maintenance 6 / 25
Adoption 6 / 25
Maturity 13 / 25
Community 11 / 25

How are scores calculated?

Stars

21

Forks

3

Language

Python

License

MIT

Last pushed

Dec 28, 2025

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/mcp/M507/AI-SOC-Agent"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.