CyberThreatIntelligenceENTEL / malware-IoC
☆14Updated last year
Alternatives and similar repositories for malware-IoC:
Users that are interested in malware-IoC are comparing it to the libraries listed below
- IOC Stream and Command and Control Database Containing Command and Control (C2) Servers Detected Daily by ThreatMon.☆59Updated last year
- ☆27Updated this week
- The Threat Actor Profile Guide for CTI Analysts☆103Updated last year
- ☆45Updated 9 months ago
- IOC Collection 2022☆56Updated last year
- Advanced Threat Hunting: Ransomware Group☆18Updated last month
- 🏴☠️💰 Another Ransomware gang tracker☆173Updated this week
- Digital Forensics Incident Response and Detection engineering: Análisis forense de artefactos comunes y no tan comunes. Técnicas anti-for…☆76Updated 2 months ago
- Windows Forensics Environment Builder☆125Updated 3 weeks ago
- A repository of my own Sigma detection rules.☆157Updated 4 months ago
- CarbonBlack EDR detection rules and response actions☆71Updated 4 months ago
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆65Updated last year
- Ransomware groups posts☆36Updated this week
- Building a consolidated RSS feed for articles about cyberattacks☆64Updated this week
- Config files for my GitHub profile.☆14Updated last year
- BlackBerry Threat Research & Intelligence☆96Updated last year
- ☆31Updated 10 months ago
- Cyber Underground General Intelligence Requirements☆89Updated 11 months ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆150Updated 8 months ago
- A collection of CVEs weaponized by ransomware operators☆103Updated 3 weeks ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆73Updated last week
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated last year
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆82Updated last week
- Sigma rules to share with the community☆116Updated this week
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆59Updated 6 months ago
- Hive v5 file decryption algorithm☆34Updated 2 years ago
- ☆195Updated 11 months ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆84Updated 2 years ago
- Some important DFIR Resources☆83Updated last year
- Linux Baseline and Forensic Triage Tool - BETA☆52Updated 2 years ago