MISP / misp-warninglistsLinks
Warning lists to inform users of MISP about potential false-positives or other information in indicators
☆578Updated 3 weeks ago
Alternatives and similar repositories for misp-warninglists
Users that are interested in misp-warninglists are comparing it to the libraries listed below
Sorting:
- Zeek-Formatted Threat Intelligence Feeds☆374Updated this week
- Cortex Analyzers Repository☆466Updated this week
- MISP Docker (XME edition)☆282Updated last year
- MISP trainings, threat intel and information sharing training materials with source code☆412Updated 2 months ago
- Defanged Indicator of Compromise (IOC) Extractor.☆540Updated 11 months ago
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆354Updated 2 months ago
- Extract and aggregate threat intelligence.☆876Updated last year
- Python library using the MISP Rest API☆471Updated this week
- Python API Client for TheHive☆232Updated this week
- A (nearly) production ready Dockered MISP☆232Updated last year
- Online hash checker for Virustotal and other services☆831Updated 4 months ago
- DFIRTrack - The Incident Response Tracking Application☆523Updated 11 months ago
- User guide of MISP☆272Updated 7 months ago
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,071Updated last week
- The Python SDK for AlienVault OTX☆381Updated last year
- Sophos-originated indicators-of-compromise from published reports☆607Updated last week
- Documentation of Cortex☆174Updated last year
- TweetFeed collects Indicators of Compromise (IOCs) shared by the infosec community at Twitter. Here you will find malicious URLs, domains…☆583Updated this week
- Docker image for MISP☆132Updated last month
- A knowledge base of actionable Incident Response techniques☆646Updated 3 years ago
- ☆127Updated last year
- Zeek Log Cheatsheets☆295Updated last week
- A set of Zeek scripts to detect ATT&CK techniques.☆599Updated last year
- Clusters and elements to attach to MISP events or attributes (like threat actors)☆577Updated last week
- Standard-Format Threat Intelligence Feeds☆120Updated this week
- OpenCTI Connectors☆462Updated this week
- Documentation of TheHive☆398Updated last year
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆933Updated last year
- Threat Hunting queries for various attacks☆238Updated this week
- Sublime rules for email attack detection, prevention, and threat hunting.☆315Updated this week