Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)
☆102Jul 10, 2025Updated 7 months ago
Alternatives and similar repositories for ThreatKB
Users that are interested in ThreatKB are comparing it to the libraries listed below
Sorting:
- Extract and aggregate threat intelligence.☆906Jan 31, 2024Updated 2 years ago
- Defanged Indicator of Compromise (IOC) Extractor.☆567Aug 28, 2024Updated last year
- A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.☆387May 11, 2022Updated 3 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- ☆23Jul 7, 2023Updated 2 years ago
- Sightings Ecosystem gives cyber defenders visibility into what adversaries actually do in the wild. With your help, we are tracking MITRE…☆38May 28, 2025Updated 9 months ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Mar 26, 2016Updated 9 years ago
- Performs OCR on image files and scans them for matches to YARA rules☆42Oct 30, 2018Updated 7 years ago
- Indicator Extractor☆141Jul 14, 2018Updated 7 years ago
- Resources, articles, thoughts, datasets, papers on TI tradecraft☆11Aug 24, 2018Updated 7 years ago
- Collection of malware ioc hashes from blog posts. A Python script is provided to search through it.☆19Sep 10, 2020Updated 5 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆44Jun 7, 2017Updated 8 years ago
- Mitre Att&ck Technique Emulation☆82Mar 6, 2019Updated 6 years ago
- Django web interface for managing Yara rules☆196Jul 28, 2018Updated 7 years ago
- Minimal, consistent Python API for building integrations with malware sandboxes.☆142Jan 31, 2024Updated 2 years ago
- This repository contains a collection of PowerShell tools that can be utilized to protect and defend an environment based on the recommen…☆51Sep 14, 2025Updated 5 months ago
- Indicators of Compromises (IOC) of our various investigations☆1,917Feb 20, 2026Updated last week
- YAIDS - Yara-Based IDS - Yara as an Intrusion Detection System / Yet Another Intrusion Detection System - An Intrusion Detection System (…☆26Oct 20, 2022Updated 3 years ago
- Parse YARA rules and operate over them more easily.☆194Feb 6, 2025Updated last year
- Splunk csv to KVStore ES Threat Intel☆11Jul 11, 2016Updated 9 years ago
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆245Feb 11, 2026Updated 2 weeks ago
- The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).☆556May 9, 2023Updated 2 years ago
- Yara rules for detecting malware☆23Sep 9, 2025Updated 5 months ago
- Indicators from Unit 42 Public Reports☆728Aug 17, 2025Updated 6 months ago
- Threat Feed Aggregation, Made Easy☆169Jul 13, 2020Updated 5 years ago
- Parse Yara rules and operate over them more easily.☆51Jan 7, 2019Updated 7 years ago
- Machinae Security Intelligence Collector☆539May 15, 2024Updated last year
- An active domain name query tool to help keep track of domain name movements...☆16Mar 28, 2021Updated 4 years ago
- A real-time Grafana dashboard using MISP ZeroMQ message queue and InfluxDB☆19Mar 15, 2024Updated last year
- A collection of infosec related scripts and information.☆53Oct 2, 2024Updated last year
- Collection of YARA rules designed for usage through VirusTotal.com.☆85Apr 4, 2024Updated last year
- Yara rules☆49Jan 28, 2014Updated 12 years ago
- The principal objective of this project is to develop a knowledge base of the tactics, techniques, and procedures (TTPs) used by insiders…☆149Jul 9, 2025Updated 7 months ago
- Your Everyday Threat Intelligence☆1,951Feb 12, 2026Updated 2 weeks ago
- A curated list of awesome YARA rules, tools, and people.☆4,146Updated this week
- Automatic YARA rule generation for Malpedia☆168Sep 8, 2022Updated 3 years ago
- Yara Ruleset for scanning Linux servers for shells, spamming, phishing and other webserver baddies☆107Mar 4, 2021Updated 4 years ago
- Kaspersky's GReAT KLara☆732Jul 24, 2024Updated last year
- OASIS Cyber Threat Intelligence (CTI) TC Open Repository: Convert STIX 1.2 XML to STIX 2.x JSON☆52Apr 15, 2024Updated last year