All Categories → Security → threat-intelligence

Top 106 threat-intelligence open source projects

Stalkphish
StalkPhish - The Phishing kits stalker, harvesting phishing kits for investigations.
SyntheticSun
SyntheticSun is a defense-in-depth security automation and monitoring framework which utilizes threat intelligence, machine learning, managed AWS security services and, serverless technologies to continuously prevent, detect and respond to threats.
yara-rules
Yara rules written by me, for free use.
misp-osint-collection
Collection of best practices to add OSINT into MISP and/or MISP communities
pybinaryedge
Python 3 Wrapper for the BinaryEdge API https://www.binaryedge.io/
rstthreats
Aggregated Indicators of Compromise collected and cross-verified from multiple open and community-supported sources, enriched and ranked using our intelligence platform for you. Threat Intelligence, Threat feed, Open source feed.
DaProfiler
DaProfiler allows you to create a profile on your target based in France only. The particularity of this program is its ability to find the e-mail addresses your target.
pyc2bytecode
A Python Bytecode Disassembler helping reverse engineers in dissecting Python binaries by disassembling and analyzing the compiled python byte-code(.pyc) files across all python versions (including Python 3.10.*)
ayashige
Ayashige provides a list of suspicious newly updated domains as a JSON feed
attckr
⚔️MITRE ATT&CK Machinations in R
OSINT-Brazuca
Repositório criado com intuito de reunir informações, fontes(websites/portais) e tricks de OSINT dentro do contexto Brasil.
IronNetTR
Threat research and reporting from IronNet's Threat Research Teams
misp-takedown
A curses-style interface for automatic takedown notification based on MISP events.
cycat-service
CyCAT.org API back-end server including crawlers
TwiTi
This is a project of "#Twiti: Social Listening for Threat Intelligence" (TheWebConf 2021)
coronavirus-covid-19-SARS-CoV-2-IoCs
All the IOC's I have gathered which are used directly involved coronavirus / covid-19 / SARS-CoV-2 cyber attack campaigns
FireHOL-IP-Aggregator
Application for keeping feeds from FireHOL https://github.com/firehol/blocklist-ipsets with IP addresses appearance history. HTTP-based API service is developed for search requests.
sqhunter
A simple threat hunting tool based on osquery, Salt Open and Cymon API
Phishruffus
Intelligent threat hunter and phishing servers
SSHapendoes
Capture passwords of login attempts on non-existent and disabled accounts.
malware-persistence
Collection of malware persistence and hunting information. Be a persistent persistence hunter!
intelligence-icons
intelligence-icons is a collection of icons and diagrams for building training and marketing materials around Intelligence sharing; including but not limited to CTI, MISP Threat Sharing, STIX 2.
threat-intel
Signatures and IoCs from public Volexity blog posts.
Public-Intelligence-Feeds
Standard-Format Threat Intelligence Feeds
mail to misp
Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.
CCXDigger
The CyberCX Digger project is designed to help Australian organisations determine if they have been impacted by certain high profile cyber security incidents. Digger provides threat hunting functionality packaged in a simple-to-use tool, allowing users to detect certain attacker activities; all for free.
61-106 of 106 threat-intelligence projects