drego85 / meiocLinks
Extracting IoC data from eMail
☆139Updated 5 months ago
Alternatives and similar repositories for meioc
Users that are interested in meioc are comparing it to the libraries listed below
Sorting:
- ☆100Updated 3 weeks ago
- Sigma detection rules for hunting with the threathunting-keywords project☆57Updated 10 months ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆116Updated last year
- ☆34Updated last month
- Convert Sigma rules to SIEM queries, directly in your browser.☆107Updated 2 weeks ago
- Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.☆17Updated 2 years ago
- Forensic Artifact Collection Tool Matrix☆91Updated last year
- Cyber Underground General Intelligence Requirements☆97Updated last year
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆53Updated last year
- Public tools, scripts or code snippets that can help when working with our products☆46Updated 8 months ago
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆75Updated 3 weeks ago
- A home for detection content developed by the delivr.to team☆73Updated 4 months ago
- The core backend server handling API requests and task management☆55Updated 3 weeks ago
- IOC Stream and Command and Control Database Containing Command and Control (C2) Servers Detected Daily by ThreatMon.☆69Updated 2 years ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆160Updated 8 months ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆89Updated 2 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆54Updated last year
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆34Updated 3 years ago
- CarbonBlack EDR detection rules and response actions☆73Updated last year
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆63Updated last year
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆98Updated last week
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆109Updated last year
- ReWrite of AChoir in Go for Cross Platform forensic artifact collection and processing☆42Updated this week
- Turn any blog into structured threat intelligence.☆43Updated last week
- A list of RMMs designed to be used in automation to build alerts☆116Updated last month
- A collection of tips for using MISP.☆75Updated last year
- ☆52Updated 4 months ago
- ☆22Updated 2 years ago
- AIL project training materials☆38Updated 5 months ago
- An open source platform to support analysts to organise their case and tasks☆117Updated 2 weeks ago