cocaman / urlhaus
☆29Updated 7 years ago
Alternatives and similar repositories for urlhaus:
Users that are interested in urlhaus are comparing it to the libraries listed below
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 4 years ago
- ☆16Updated 4 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆19Updated 2 years ago
- Converting data from services like Censys and Shodan to a common data model☆49Updated 7 months ago
- Imports Alienvault OTX pulses to a MISP instance☆52Updated 3 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Updated 7 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 3 years ago
- Simple yara rule manager☆66Updated 2 years ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 5 years ago
- Incident Response Network Tools☆24Updated 3 years ago
- Slides and Other Resources from my latest Talks and Presentations☆24Updated 4 years ago
- Best practices in threat intelligence☆46Updated 2 years ago
- automate your MISP installs☆67Updated 4 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 4 years ago
- Easy way to create a MISP event related to a Phishing page☆17Updated last year
- A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis☆26Updated 4 months ago
- A simple ReST server to lookup threat actors (by name, synonym or UUID) and returning the corresponding MISP galaxy information about the…☆48Updated last year
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- THOR MITRE ATT&CK Framework Coverage☆24Updated 4 years ago
- Synopsis is a tool to aid analysts reviewing browser history files by providing a high-level “synopsis” of key information.☆21Updated 6 years ago
- Home to the ActorTrackr source code☆28Updated 7 years ago
- Cisco AMP threat hunting scripts☆14Updated 5 months ago
- Tool for automatic list generation of known TOR and VPN exit nodes☆29Updated last year
- Triage automation for suspect URLs☆13Updated 5 years ago
- repo for sharing stuff☆16Updated last year
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆44Updated 3 years ago