Clusters and elements to attach to MISP events or attributes (like threat actors)
☆624May 16, 2026Updated this week
Alternatives and similar repositories for misp-galaxy
Users that are interested in misp-galaxy are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.☆294May 13, 2026Updated last week
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆367Apr 29, 2026Updated 3 weeks ago
- Definition, description and relationship types of MISP objects☆108May 12, 2026Updated last week
- MISP (core software) - Open Source Threat Intelligence and Sharing Platform☆6,290Updated this week
- User guide of MISP☆289Mar 20, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Python library using the MISP Rest API☆484Updated this week
- Scripts to process big chunks of data from MISP and do in depth correlations on samples.☆12Jul 2, 2016Updated 9 years ago
- Your Everyday Threat Intelligence☆1,982Updated this week
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,559Jan 12, 2026Updated 4 months ago
- MISP trainings, threat intel and information sharing training materials with source code☆430Mar 30, 2026Updated last month
- APT & CyberCriminal Campaign Collection☆4,082Jul 25, 2024Updated last year
- Extract and aggregate threat intelligence.☆910Jan 31, 2024Updated 2 years ago
- Cyber Threat Intelligence Repository expressed in STIX 2.0☆2,055May 12, 2026Updated last week
- YARA signature and IOC database for my scanners and tools☆2,955May 8, 2026Updated last week
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Pythonic way to work with the galaxies defined there: https://github.com/MISP/misp-galaxy☆20Feb 10, 2026Updated 3 months ago
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,116Apr 28, 2026Updated 3 weeks ago
- MISP website (hugo-based)☆25Apr 30, 2026Updated 2 weeks ago
- APTnotes data☆1,786Dec 16, 2024Updated last year
- Indicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.☆968Feb 28, 2026Updated 2 months ago
- Python module to use the MISP Taxonomies☆31Updated this week
- Indicators from Unit 42 Public Reports☆728Aug 17, 2025Updated 9 months ago
- Indicators of Compromises (IOC) of our various investigations☆1,952Updated this week
- Kaspersky's GReAT KLara☆730Jul 24, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Loki - Simple IOC and YARA Scanner☆3,753Jan 12, 2026Updated 4 months ago
- Detect Tactics, Techniques & Combat Threats☆2,290Apr 29, 2026Updated 3 weeks ago
- CocktailParty is a data broker system based on phoenix framework☆23Apr 23, 2025Updated last year
- Defanged Indicator of Compromise (IOC) Extractor.☆578Aug 28, 2024Updated last year
- MISP Workbench☆28Oct 19, 2016Updated 9 years ago
- AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project☆1,370Updated this week
- An open source platform to support analysts to organise their case and tasks☆141Updated this week
- A live dashboard for a real-time overview of threat intelligence from MISP instances☆207Jul 10, 2023Updated 2 years ago
- Script for pulling events from a MISP database and converting them to Autofocus queries.☆13Dec 28, 2015Updated 10 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Re-play Security Events☆1,753Mar 20, 2024Updated 2 years ago
- Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups☆726Dec 26, 2022Updated 3 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- Set of Maltego transforms to inferface with a MISP Threat Sharing instance, and also to explore the whole MITRE ATT&CK dataset.☆184Jun 23, 2024Updated last year
- A curated list of Awesome Threat Intelligence resources☆10,195Jan 19, 2026Updated 4 months ago
- A collection of sources of indicators of compromise.☆981May 8, 2025Updated last year
- DC3 Malware Configuration Parser (DC3-MWCP) is a framework for parsing configuration information from malware. The information extracted …☆344May 6, 2026Updated last week