ciscocsirt / GOSINT
The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).
☆541Updated last year
Alternatives and similar repositories for GOSINT:
Users that are interested in GOSINT are comparing it to the libraries listed below
- Machinae Security Intelligence Collector☆508Updated 9 months ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆463Updated 6 years ago
- A modular Python application to collect intelligence for malicious hosts.☆264Updated 3 years ago
- DPS' Lightweight Investigation Notebook☆427Updated last year
- ☆308Updated 7 years ago
- 16,432 Free Yara rules created by☆381Updated 5 years ago
- Version 2 of the ThreatCrowd API☆269Updated last year
- The Correlated CVE Vulnerability And Threat Intelligence Database API☆939Updated 3 years ago
- Open Source Threat Intelligence Chat Bot☆321Updated 4 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago
- A PoC tool designed to enhance the effectiveness of your traps by spreading breadcrumbs & honeytokens across your systems to lure the att…☆273Updated 5 years ago
- Praetorian's public release of our Metasploit automation of MITRE ATT&CK™ TTPs☆720Updated 5 years ago
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆367Updated 6 years ago
- Honeypot Intelligence with Splunk☆254Updated 6 years ago
- Code + documentation for the public GreyNoise API☆314Updated 3 years ago
- Extract and aggregate threat intelligence.☆846Updated last year
- A low to medium interaction honeypot.☆463Updated 11 months ago
- Threat Intelligence APIs☆276Updated last year
- Modular file scanning/analysis framework☆619Updated 5 years ago
- A collection of sources of indicators of compromise.☆837Updated 4 months ago
- ☆507Updated 4 years ago
- TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs…☆149Updated 9 months ago
- ☆1,062Updated 5 years ago
- ☆175Updated 4 years ago
- ☆201Updated last year
- Web interface for the Volatility Memory Forensics Framework☆260Updated 7 years ago
- Sandia Cyber Omni Tracker (SCOT)☆246Updated 3 months ago
- "Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security …☆1,003Updated 4 years ago
- Information released publicly by NCC Group's Cyber Incident Response Team☆477Updated 3 years ago
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆241Updated 3 years ago