Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)
☆104Aug 12, 2026Updated last month
Alternatives and similar repositories for ThreatKB
Users that are interested in ThreatKB are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Extract and aggregate threat intelligence.☆930May 26, 2026Updated 3 months ago
- Defanged Indicator of Compromise (IOC) Extractor.☆584Aug 28, 2024Updated 2 years ago
- A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.☆390May 11, 2022Updated 4 years ago
- Resources, articles, thoughts, datasets, papers on TI tradecraft☆10Aug 24, 2018Updated 8 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Mar 26, 2016Updated 10 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Yara rules for detecting malware☆22Sep 9, 2025Updated last year
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- ☆24Jul 7, 2023Updated 3 years ago
- Minimal, consistent Python API for building integrations with malware sandboxes.☆143Jan 31, 2024Updated 2 years ago
- Django web interface for managing Yara rules☆195Jul 28, 2018Updated 8 years ago
- Indicator Extractor☆141Jul 14, 2018Updated 8 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆45Jun 7, 2017Updated 9 years ago
- Sightings Ecosystem gives cyber defenders visibility into what adversaries actually do in the wild. With your help, we are tracking MITRE…☆38May 28, 2025Updated last year
- Collection of malware ioc hashes from blog posts. A Python script is provided to search through it.☆19Sep 10, 2020Updated 6 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Performs OCR on image files and scans them for matches to YARA rules☆42Oct 30, 2018Updated 7 years ago
- Automatic YARA rule generation for Malpedia☆168Sep 8, 2022Updated 4 years ago
- Repository containing IOCs, CSV and MISP JSON from our blogs☆83Aug 4, 2021Updated 5 years ago
- The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).☆561May 9, 2023Updated 3 years ago
- Indicators of Compromises (IOC) of our various investigations☆1,982Updated this week
- The "DFUR" Splunk application and data that was presented at the 2020 SANS DFIR Summit.☆13Sep 9, 2020Updated 6 years ago
- This repository contains supplemental items including IOCs, and signatures discussed in Huntress blogposts, and other media.☆52Sep 9, 2026Updated last week
- This repository contains a collection of PowerShell tools that can be utilized to protect and defend an environment based on the recommen…☆52Sep 5, 2026Updated 2 weeks ago
- Machinae Security Intelligence Collector☆536Jun 3, 2026Updated 3 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A Pythonic interface and command line tool for interacting with the InQuest Labs API.☆37Nov 18, 2025Updated 10 months ago
- Parse YARA rules and operate over them more easily.☆195Feb 6, 2025Updated last year
- YAIDS - Yara-Based IDS - Yara as an Intrusion Detection System / Yet Another Intrusion Detection System - An Intrusion Detection System (…☆27Oct 20, 2022Updated 3 years ago
- A curated list of awesome YARA rules, tools, and people.☆4,274Jun 15, 2026Updated 3 months ago
- Splunk csv to KVStore ES Threat Intel☆11Jul 11, 2016Updated 10 years ago
- please use https://github.com/fireeye/vivisect instead☆16Oct 21, 2025Updated 11 months ago
- Explore Indicators of Compromise Automatically☆96Feb 27, 2020Updated 6 years ago
- Your Everyday Threat Intelligence☆2,029Updated this week
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Sep 18, 2018Updated 8 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- APTnotes data☆1,817Dec 16, 2024Updated last year
- A collection of infosec related scripts and information.☆54Oct 2, 2024Updated last year
- Yara Ruleset for scanning Linux servers for shells, spamming, phishing and other webserver baddies☆109Mar 4, 2021Updated 5 years ago
- Artifact analysis tools by JPCERT/CC Analysis Center☆463Aug 14, 2025Updated last year
- A desktop App to add STIX-2 objects to TAXII-2.0 servers☆11Mar 13, 2019Updated 7 years ago
- FAME Automates Malware Evaluation☆946Sep 14, 2026Updated last week
- Detecting PowerShell Empire, Metasploit Meterpreter and Cobalt Strike agents by payload size sequence analysis and host correlation☆15Aug 17, 2018Updated 8 years ago