ciscocsirt / GOSINT
The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).
☆536Updated last year
Related projects: ⓘ
- Machinae Security Intelligence Collector☆502Updated 4 months ago
- A modular Python application to collect intelligence for malicious hosts.☆260Updated 3 years ago
- DPS' Lightweight Investigation Notebook☆421Updated 8 months ago
- Praetorian's public release of our Metasploit automation of MITRE ATT&CK™ TTPs☆712Updated 4 years ago
- 16,432 Free Yara rules created by☆378Updated 5 years ago
- Open Source Threat Intelligence Chat Bot☆315Updated 4 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆280Updated 6 years ago
- A collection of sources of indicators of compromise.☆784Updated 2 months ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆462Updated 5 years ago
- A Python RESTful API framework for online malware analysis and threat intelligence services.☆365Updated 3 months ago
- Extract and aggregate threat intelligence.☆820Updated 7 months ago
- ☆1,048Updated 5 years ago
- An information security preparedness tool to do adversarial simulation.☆1,089Updated 5 years ago
- The Correlated CVE Vulnerability And Threat Intelligence Database API☆926Updated 3 years ago
- Version 2 of the ThreatCrowd API☆270Updated last year
- ☆237Updated this week
- DejaVU - Open Source Deception Framework☆394Updated last year
- A PoC tool designed to enhance the effectiveness of your traps by spreading breadcrumbs & honeytokens across your systems to lure the att…☆272Updated 5 years ago
- Threat Intelligence APIs☆273Updated last year
- FAME Automates Malware Evaluation☆845Updated 2 weeks ago
- Code + documentation for the public GreyNoise API☆313Updated 3 years ago
- Information released publicly by NCC Group's Cyber Incident Response Team☆471Updated 2 years ago
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆364Updated 5 years ago
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆489Updated last year
- Honeypot Intelligence with Splunk☆252Updated 5 years ago
- ☆306Updated 7 years ago
- Documentation and Sharing Repository for ThreatPinch Lookup Chrome & Firefox Extension☆345Updated 6 years ago
- Virtual Machine for Adversary Emulation and Threat Hunting☆1,234Updated 4 years ago
- Tools, techniques, cheat sheets, and other resources to assist those defending organizations and detecting adversaries☆437Updated 2 years ago
- Modular file scanning/analysis framework☆616Updated 4 years ago