ciscocsirt / GOSINT
The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).
☆539Updated last year
Alternatives and similar repositories for GOSINT:
Users that are interested in GOSINT are comparing it to the libraries listed below
- Machinae Security Intelligence Collector☆506Updated 8 months ago
- 16,432 Free Yara rules created by☆382Updated 5 years ago
- DPS' Lightweight Investigation Notebook☆426Updated last year
- ☆309Updated 7 years ago
- Open Source Threat Intelligence Chat Bot☆318Updated 4 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆288Updated 7 years ago
- A PoC tool designed to enhance the effectiveness of your traps by spreading breadcrumbs & honeytokens across your systems to lure the att…☆273Updated 5 years ago
- A collection of sources of indicators of compromise.☆826Updated 3 months ago
- Version 2 of the ThreatCrowd API☆268Updated last year
- Praetorian's public release of our Metasploit automation of MITRE ATT&CK™ TTPs☆716Updated 4 years ago
- A modular Python application to collect intelligence for malicious hosts.☆265Updated 3 years ago
- Threat Intelligence APIs☆275Updated last year
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆465Updated 5 years ago
- ☆1,057Updated 5 years ago
- Honeypot Intelligence with Splunk☆254Updated 6 years ago
- An information security preparedness tool to do adversarial simulation.☆1,106Updated 5 years ago
- Extract and aggregate threat intelligence.☆840Updated 11 months ago
- The Correlated CVE Vulnerability And Threat Intelligence Database API☆936Updated 3 years ago
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆497Updated 2 years ago
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆366Updated 5 years ago
- Code + documentation for the public GreyNoise API☆314Updated 3 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆432Updated last year
- TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs…☆149Updated 7 months ago
- A Python RESTful API framework for online malware analysis and threat intelligence services.☆368Updated 7 months ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆175Updated 3 years ago
- DFIRTrack - The Incident Response Tracking Application☆487Updated 4 months ago
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆240Updated 3 years ago
- Documentation of TheHive☆393Updated last year
- Modular file scanning/analysis framework☆619Updated 5 years ago