Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups
☆725Dec 26, 2022Updated 3 years ago
Alternatives and similar repositories for CyberThreatIntel
Users that are interested in CyberThreatIntel are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- IOC from articles, tweets for archives☆318Dec 12, 2023Updated 2 years ago
- Interesting APT Report Collection And Some Special IOCs☆3,086Aug 22, 2026Updated last week
- Indicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.☆964Feb 28, 2026Updated 6 months ago
- APT & CyberCriminal Campaign Collection☆4,100Jul 25, 2024Updated 2 years ago
- Windows Events Attack Samples☆2,615Jan 24, 2023Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Toolset for research malware and Cobalt Strike beacons☆210Mar 11, 2025Updated last year
- Personal compilation of APT malware from whitepaper releases, documents and own research☆261Feb 7, 2019Updated 7 years ago
- ☆217Jun 5, 2025Updated last year
- Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which …☆446Oct 26, 2022Updated 3 years ago
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,647Jan 12, 2026Updated 7 months ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆588May 5, 2024Updated 2 years ago
- Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, M…☆4,076Aug 7, 2026Updated 3 weeks ago
- Misc Threat Hunting Resources☆377Jan 26, 2023Updated 3 years ago
- Detect Tactics, Techniques & Combat Threats☆2,335Aug 6, 2026Updated 3 weeks ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Splunk app mapped to MITRE ATT&CK to guide your threat hunts☆1,188Jul 26, 2023Updated 3 years ago
- Re-play Security Events☆1,807Mar 20, 2024Updated 2 years ago
- YARA signature and IOC database for my scanners and tools☆3,015Aug 3, 2026Updated 3 weeks ago
- Repository of YARA rules made by Trellix ATR Team☆626Mar 18, 2025Updated last year
- Indicators of Compromises (IOC) of our various investigations☆1,981Jun 25, 2026Updated 2 months ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆141Nov 19, 2023Updated 2 years ago
- A toolset to make a system look as if it was the victim of an APT attack☆2,765Sep 23, 2025Updated 11 months ago
- Kaspersky's GReAT KLara☆728Jul 24, 2024Updated 2 years ago
- Volatility plugin for extracts configuration data of known malware☆498Dec 22, 2023Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- APTnotes data☆1,811Dec 16, 2024Updated last year
- Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK☆1,077Nov 28, 2024Updated last year
- APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the …☆1,419Nov 7, 2024Updated last year
- Automatically create YARA rules from malicious documents.☆210May 16, 2022Updated 4 years ago
- Utilities for Sysmon☆1,660Apr 4, 2026Updated 4 months ago
- Your Everyday Threat Intelligence☆2,021Updated this week
- ☆719Oct 28, 2022Updated 3 years ago
- Retired beginner/intermediate malware analysis training materials from @pedramamini and @erocarrera.☆905Feb 25, 2020Updated 6 years ago
- Miscellaneous Malware RE☆194May 1, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Pull some Malware samples here for other security researchers/malware analyst's to analyze and play with.☆172May 29, 2024Updated 2 years ago
- Telsy CTI Research Team☆57Dec 15, 2020Updated 5 years ago
- Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing…☆1,785Jan 16, 2026Updated 7 months ago
- A collection of resources for Threat Hunters☆917Oct 15, 2024Updated last year
- For all these times you're asking yourself "what is this panel again?"☆261Jan 29, 2026Updated 7 months ago
- RedPeanut is a small RAT developed in .Net Core 2 and its agent in .Net 3.5 / 4.0.☆330Jul 7, 2023Updated 3 years ago
- Elemental - An ATT&CK Threat Library☆318Dec 8, 2022Updated 3 years ago