certtools / intelmqLinks
IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
☆1,063Updated this week
Alternatives and similar repositories for intelmq
Users that are interested in intelmq are comparing it to the libraries listed below
Sorting:
- CRITs - Collaborative Research Into Threats☆904Updated 5 years ago
- Your Everyday Threat Intelligence☆1,879Updated this week
- FAME Automates Malware Evaluation☆904Updated 2 months ago
- Python library using the MISP Rest API☆470Updated this week
- Extract and aggregate threat intelligence.☆872Updated last year
- Cortex Analyzers Repository☆464Updated 2 weeks ago
- Clusters and elements to attach to MISP events or attributes (like threat actors)☆572Updated last week
- A collection of sources of indicators of compromise.☆879Updated 2 months ago
- Real-time, container-based file scanning at enterprise scale☆932Updated 3 weeks ago
- Incident Response Methodologies☆1,024Updated 6 years ago
- DPS' Lightweight Investigation Notebook☆432Updated last year
- Defanged Indicator of Compromise (IOC) Extractor.☆537Updated 10 months ago
- An information security preparedness tool to do adversarial simulation.☆1,124Updated 6 years ago
- MISP trainings, threat intel and information sharing training materials with source code☆412Updated last month
- An informational repo about hunting for adversaries in your IT environment.☆1,793Updated 3 years ago
- AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project☆1,333Updated this week
- Online hash checker for Virustotal and other services☆831Updated 3 months ago
- Cortex: a Powerful Observable Analysis and Active Response Engine☆1,441Updated last month
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆355Updated last month
- Fast Incident Response☆1,899Updated this week
- Create actionable data from your Vulnerability Scans☆1,386Updated 2 years ago
- Documentation of TheHive☆398Updated last year
- DFIRTrack - The Incident Response Tracking Application☆522Updated 10 months ago
- The Python SDK for AlienVault OTX☆377Updated last year
- A collection of resources for Threat Hunters☆892Updated 8 months ago
- An analytical framework for network traffic and behavioral analytics☆452Updated 2 years ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆469Updated 6 years ago
- Actionable analytics designed to combat threats☆990Updated 3 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆436Updated 2 years ago
- Configuration files for the SOF-ELK VM☆1,597Updated last week