3c7 / infrastructure-tracking-schema
☆24Updated 2 years ago
Alternatives and similar repositories for infrastructure-tracking-schema:
Users that are interested in infrastructure-tracking-schema are comparing it to the libraries listed below
- ☆14Updated 6 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated 2 years ago
- An extendable tool to extract and aggregate IoCs from threat feeds☆33Updated last year
- Converting data from services like Censys and Shodan to a common data model☆49Updated 6 months ago
- Collection of scripts used to analyse malware or emails☆19Updated 4 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 7 years ago
- CyCAT.org taxonomies☆14Updated 3 years ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 5 years ago
- ☆22Updated 4 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 4 years ago
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆13Updated 7 months ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- Home to the ActorTrackr source code☆28Updated 7 years ago
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated 2 years ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆32Updated last month
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- Modular command-line threat hunting tool & framework.☆17Updated 4 years ago
- Tool for automatic list generation of known TOR and VPN exit nodes☆30Updated last year
- pocket guide for core threat hunting concepts☆23Updated 4 years ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Updated 7 years ago
- Low budget VirusTotal Intelligence Cosplay☆20Updated 3 years ago
- Tools used by CSIRT and especially in the scope of CNW☆16Updated 5 months ago
- Threat Box Assessment Tool☆19Updated 3 years ago
- A collection of Python utilities for use in scripts related to working with "indicators of compromise" (IOCs).