PAST2212 / domainthreatLinks
Newly registered Domain Monitoring to detect phishing and brand impersonation with subdomain enumeration and source code scraping
☆52Updated this week
Alternatives and similar repositories for domainthreat
Users that are interested in domainthreat are comparing it to the libraries listed below
Sorting:
- Have you ever wanted to search a link or IP address on multiple OSINT pages at once?☆53Updated last week
- IOC Stream and Command and Control Database Containing Command and Control (C2) Servers Detected Daily by ThreatMon.☆66Updated last year
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆97Updated 8 months ago
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆61Updated 11 months ago
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆51Updated 8 months ago
- MISP Playbooks☆206Updated last month
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆155Updated 3 months ago
- Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to autom…☆49Updated last year
- Mapping of open-source detection rules and atomic tests.☆169Updated 5 months ago
- Data from Dark Web Marketplace scraping - Be careful☆40Updated 8 months ago
- ☆92Updated last month
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆124Updated last year
- ThreatSeeker: Threat Hunting via Windows Event Logs☆121Updated 2 years ago
- Extracting IoC data from eMail☆134Updated this week
- Building a consolidated RSS feed for articles about cyberattacks☆68Updated this week
- A collection of various SIEM rules relating to malware family groups.☆66Updated last year
- ☆51Updated 3 weeks ago
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆128Updated 11 months ago
- ☆33Updated this week
- ☆107Updated last month
- A collection of companies that disclose adversary TTPs after they have been breached☆244Updated last year
- Convert Sigma rules to SIEM queries, directly in your browser.☆91Updated this week
- A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you com…☆171Updated last month
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆76Updated 2 months ago
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆186Updated 6 months ago
- CarbonBlack EDR detection rules and response actions☆71Updated 10 months ago
- An open-source self-hosted purple team management web application.☆276Updated 2 months ago
- This Repository consists all Public Cheatsheets created by BlackPerl DFIR Content Team☆19Updated 9 months ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆81Updated last month
- A security analysis tool that identifies DNS queries made by browser extensions, empowering security teams to detect and investigate susp…☆170Updated 5 months ago