corumir / Practical-Tradecraft
Resources, articles, thoughts, datasets, papers on TI tradecraft
☆11Updated 6 years ago
Alternatives and similar repositories for Practical-Tradecraft:
Users that are interested in Practical-Tradecraft are comparing it to the libraries listed below
- Home to the ActorTrackr source code☆28Updated 7 years ago
- Python module to use the MISP Taxonomies☆29Updated last week
- A collection of Python utilities for use in scripts related to working with "indicators of compromise" (IOCs).☆17Updated 6 years ago
- Transforms for the AlienVault OTX service☆39Updated 8 years ago
- open-source intelligence gathering for SIEMs <3☆37Updated 7 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text fil…☆78Updated 11 months ago
- ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a se…☆67Updated 9 years ago
- Flexible framework that allows automation to process cyber threat information and update endpoint defense tools.☆21Updated 6 years ago
- IntelMQ command line tool to process events and send out email notifications.☆9Updated this week
- ☆24Updated 2 years ago
- For storing of the volumes☆4Updated 4 years ago
- ☆18Updated 6 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 5 years ago
- Local Maltego Transforms for crt.sh☆12Updated 7 years ago
- Virustotal Data to Timesketch☆17Updated 5 years ago
- Maltego Transform to put entities into MISP events☆26Updated 3 years ago
- This repository is a curated list of pro bono incident response entities.☆20Updated last year
- CRL Monitor - X.509 Certificate Revocation List monitoring and X.509/Subject caching☆34Updated 3 years ago
- Maltego CaseFile entities for information security investigations, malware analysis and incident response☆65Updated 7 years ago
- CertWatcher is a new take on monitoring for phishing sites. It is meant to be a set and forget service that will send you a daily report …☆11Updated 4 years ago
- Passive DNS Common Output Format☆36Updated 4 months ago
- dnssinkholelist is a python package focused on combining open source lists of malicious domains, dynamic dns domains, and advertisement d…☆18Updated 8 years ago
- Splunk integration with MISP☆12Updated 6 years ago
- repo for sharing stuff☆16Updated last year
- Providing timelines based on OSINT Reports☆32Updated last year
- Imports Alienvault OTX pulses to a MISP instance☆52Updated 3 years ago
- Proof of concept implementation of a cyber threat intelligence and incident handling platform☆11Updated last year
- Python bindings for Yeti's API☆18Updated last year
- Scumblr instructions with custom search providers for monitoring malicous content☆17Updated 7 years ago