certtools / intelmq
IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
☆976Updated 2 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for intelmq
- CRITs - Collaborative Research Into Threats☆893Updated 5 years ago
- Your Everyday Threat Intelligence☆1,749Updated this week
- Extract and aggregate threat intelligence.☆831Updated 9 months ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆463Updated 5 years ago
- FAME Automates Malware Evaluation☆862Updated this week
- DPS' Lightweight Investigation Notebook☆423Updated 10 months ago
- Actionable analytics designed to combat threats☆972Updated 2 years ago
- A collection of sources of indicators of compromise.☆806Updated last month
- A set of Zeek scripts to detect ATT&CK techniques.☆565Updated 4 months ago
- Python library using the MISP Rest API☆445Updated this week
- Tool to extract indicators of compromise from security reports in PDF format☆429Updated last year
- Clusters and elements to attach to MISP events or attributes (like threat actors)☆531Updated this week
- Cortex: a Powerful Observable Analysis and Active Response Engine☆1,345Updated 3 weeks ago
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆345Updated this week
- Cortex Analyzers Repository☆434Updated last week
- Mapping the MITRE ATT&CK Matrix with Osquery☆776Updated last year
- Defanged Indicator of Compromise (IOC) Extractor.☆506Updated 2 months ago
- An informational repo about hunting for adversaries in your IT environment.☆1,722Updated 3 years ago
- A Splunk app mapped to MITRE ATT&CK to guide your threat hunts☆1,138Updated last year
- Incident Response Methodologies☆1,023Updated 6 years ago
- Documentation of TheHive☆393Updated last year
- Suricata, Snort and Zeek IDS rule and pcap testing system☆452Updated this week
- ☆1,051Updated 5 years ago
- Tool to gather Threat Intelligence indicators from publicly available sources☆655Updated 5 years ago
- An information security preparedness tool to do adversarial simulation.☆1,102Updated 5 years ago
- MISP trainings, threat intel and information sharing training materials with source code☆389Updated this week
- Repository of YARA rules made by Trellix ATR Team☆570Updated 11 months ago
- Cyber Analytics Repository☆908Updated 7 months ago
- An analytical framework for network traffic and behavioral analytics☆449Updated last year
- Malcom - Malware Communications Analyzer☆1,155Updated 6 years ago