☆19Jul 21, 2022Updated 4 years ago
Alternatives and similar repositories for IOCs
Users that are interested in IOCs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Provides a multi-platform Graphical User Interface for hashlookup☆12Jul 12, 2024Updated 2 years ago
- Minimal Indicator Storage System☆12Feb 8, 2021Updated 5 years ago
- Learn how to get more out of publicly available threat reports to help improve the security posture of your organization! TLP: White Thre…☆15Jun 5, 2023Updated 3 years ago
- Script to pull newly-registered domains and check for similarity against a provided word list.☆13Aug 2, 2020Updated 6 years ago
- Liberating dem proprietary APT implants☆20Dec 17, 2019Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆26Jul 23, 2024Updated 2 years ago
- Collection of various WINAPI tricks / features used or abused by Malware☆13Mar 28, 2022Updated 4 years ago
- Automated YARA rule generation from the Cert Central compromised certificate database.☆15Updated this week
- ☆18Mar 26, 2024Updated 2 years ago
- ☆22Dec 22, 2020Updated 5 years ago
- ☆11Jun 15, 2022Updated 4 years ago
- A cyber threat intelligence chatbot that ingested 2200+ reports from vx-underground.☆33Apr 1, 2024Updated 2 years ago
- Sigma detection rules for AI agent security monitoring☆16Jul 28, 2026Updated last month
- The Multiplatform Linux Sandbox☆16Dec 19, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- An extendable tool to extract and aggregate IoCs from threat feeds☆33Feb 6, 2024Updated 2 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Apr 8, 2026Updated 4 months ago
- Get-UnJlaive is tool which is able to reconstruct Jlaive (.NET Antivirus Evasion Tool (Exe2Bat)) to original Assembly and stub Assembly.☆22May 19, 2022Updated 4 years ago
- ☆217Jun 5, 2025Updated last year
- PoC + vulnerability details for CVE-2022-25262 / JetBrains Hub single-click SAML response takeover☆17Jul 5, 2022Updated 4 years ago
- A Modular MWDB Utility to Collect Fresh Malware Samples☆33May 17, 2021Updated 5 years ago
- Collection of rules created using YARA-Signator over Malpedia☆150May 18, 2026Updated 3 months ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Feb 15, 2022Updated 4 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Nov 9, 2022Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Alternative YARA scanning engine☆72Aug 23, 2022Updated 4 years ago
- ☆17May 21, 2022Updated 4 years ago
- LLM benchmark results for THOR forensic finding triage quality☆26Aug 21, 2026Updated last week
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 4 years ago
- ☆45Jul 11, 2025Updated last year
- Simple Golang JWT Bruteforcer 2☆10May 25, 2021Updated 5 years ago
- A collection of tips for using MISP.☆77Dec 11, 2024Updated last year
- Self sustainable DOM content fuzzy hashing☆11Oct 5, 2024Updated last year
- SACTI - Securely aggregate CTI sightings and report them on MISP☆14Oct 24, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Files vetted, and approved for public release☆55Nov 30, 2023Updated 2 years ago
- A tool to help malware analysts signature unique parts of RTF documents☆29Jan 5, 2026Updated 7 months ago
- Case for CVE-2022-30778☆22Aug 23, 2022Updated 4 years ago
- Private Search Set (PSS) is an extension to standard Bloom filter or a standalone hash file to describe and share private set.☆16Jan 10, 2025Updated last year
- Synapse Rapid Power-up for SinkDB☆11Jun 24, 2025Updated last year
- a-ray-grass is a yara module that provides support for DCSO-format bloom filters in yara. In the context of hashlookup, it allows quickly…☆14Aug 19, 2022Updated 4 years ago
- The missing API for the CISA Known Exploited Vulnerabilities Catalog. This repository contains the source running at kevin.gtfkd.com☆26Updated this week