MISP / misp-workbench
MISP Workbench
☆28Updated 8 years ago
Alternatives and similar repositories for misp-workbench:
Users that are interested in misp-workbench are comparing it to the libraries listed below
- Validate IOC from MISP ; Export results and iocs to SIEM and sensors using syslog and CEF format☆14Updated 8 years ago
- ☆36Updated 8 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- Maltego Transform to put entities into MISP events☆27Updated 3 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- Cyber Intel Management☆48Updated 7 years ago
- Automation for VirusTotal☆31Updated 9 years ago
- A REST API server for yara event notifications. Mapping file hashes to yara signatures in Elasticsearch for easy hash lookup or finding h…☆19Updated 9 years ago
- IOC Management and Visualization Tool☆47Updated 2 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- Some IR notes☆73Updated 8 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 7 years ago
- Some dfir stuff☆31Updated 3 years ago
- CRITs IOC Visualization in Maltego☆27Updated 10 years ago
- Log Examination Tool☆26Updated 8 years ago
- integrating bro into yara☆33Updated 10 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- Script for pulling events from a MISP database and converting them to Autofocus queries.☆13Updated 9 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 4 months ago
- A set of templates for documenting threat intelligence☆74Updated 12 years ago
- CuckooMX is a project to automate analysis of files transmitted over SMTP (using the Cuckoo sandbox)☆41Updated 12 years ago
- Python script to pull various IOCs from PDFs☆15Updated 10 years ago
- ☆28Updated 8 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 8 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆34Updated 9 years ago
- VirusTotal Intelligence Notification Puller☆28Updated 8 years ago
- ☆37Updated 10 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago