Clusters and elements to attach to MISP events or attributes (like threat actors)
☆646Oct 8, 2026Updated this week
Alternatives and similar repositories for misp-galaxy
Users that are interested in misp-galaxy are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.☆306Aug 28, 2026Updated last month
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆376Updated this week
- Definition, description and relationship types of MISP objects☆111Sep 29, 2026Updated last week
- MISP (core software) - Open Source Threat Intelligence and Sharing Platform☆6,582Updated this week
- User guide of MISP☆293Sep 15, 2026Updated 3 weeks ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Python library using the MISP Rest API☆492Updated this week
- Scripts to process big chunks of data from MISP and do in depth correlations on samples.☆12Jul 2, 2016Updated 10 years ago
- Your Everyday Threat Intelligence☆2,035Updated this week
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,683Jan 12, 2026Updated 8 months ago
- MISP trainings, threat intel and information sharing training materials with source code☆440Jul 14, 2026Updated 2 months ago
- APT & CyberCriminal Campaign Collection☆4,107Jul 25, 2024Updated 2 years ago
- Extract and aggregate threat intelligence.☆930May 26, 2026Updated 4 months ago
- Cyber Threat Intelligence Repository expressed in STIX 2.0☆2,154Aug 5, 2026Updated 2 months ago
- YARA signature and IOC database for my scanners and tools☆3,045Sep 8, 2026Updated last month
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Pythonic way to work with the galaxies defined there: https://github.com/MISP/misp-galaxy☆20Feb 10, 2026Updated 7 months ago
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,140Apr 28, 2026Updated 5 months ago
- MISP website (hugo-based)☆25Updated this week
- APTnotes data☆1,814Dec 16, 2024Updated last year
- Python module to use the MISP Taxonomies☆31Updated this week
- Indicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.☆964Feb 28, 2026Updated 7 months ago
- Indicators of Compromises (IOC) of our various investigations☆1,985Sep 17, 2026Updated 3 weeks ago
- Indicators from Unit 42 Public Reports☆726Aug 17, 2025Updated last year
- Loki - Simple IOC and YARA Scanner☆3,796Jan 12, 2026Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- CocktailParty is a data broker system based on phoenix framework☆23Apr 23, 2025Updated last year
- Detect Tactics, Techniques & Combat Threats☆2,346Sep 14, 2026Updated 3 weeks ago
- MISP Workbench☆27Oct 19, 2016Updated 9 years ago
- AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project☆1,384Oct 2, 2026Updated last week
- Defanged Indicator of Compromise (IOC) Extractor.☆584Aug 28, 2024Updated 2 years ago
- Pivotick is network graph library to facilitate pivoting.☆32Updated this week
- A live dashboard for a real-time overview of threat intelligence from MISP instances☆219Jul 10, 2023Updated 3 years ago
- A simple ReST server to lookup threat actors (by name, synonym or UUID) and returning the corresponding MISP galaxy information about the…☆51Aug 30, 2025Updated last year
- Script for pulling events from a MISP database and converting them to Autofocus queries.☆13Dec 28, 2015Updated 10 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Set of Maltego transforms to inferface with a MISP Threat Sharing instance, and also to explore the whole MITRE ATT&CK dataset.☆184Jun 23, 2024Updated 2 years ago
- Re-play Security Events☆1,831Mar 20, 2024Updated 2 years ago
- An open source platform to support analysts to organise their case and tasks☆163Sep 24, 2026Updated 2 weeks ago
- Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups☆727Dec 26, 2022Updated 3 years ago
- A curated list of Awesome Threat Intelligence resources☆10,713May 31, 2026Updated 4 months ago
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- DC3 Malware Configuration Parser (DC3-MWCP) is a framework for parsing configuration information from malware. The information extracted …☆353Jul 17, 2026Updated 2 months ago