☆512Oct 7, 2024Updated last year
Alternatives and similar repositories for Malware-IOCs
Users that are interested in Malware-IOCs are comparing it to the libraries listed below
Sorting:
- ☆194Feb 6, 2024Updated 2 years ago
- IOC Collection 2022☆57Mar 7, 2023Updated 3 years ago
- Malwoverview is a rapid response tool used to gather intelligence information from VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malsh…☆3,653Mar 11, 2026Updated last week
- Automatically created C2 Feeds☆667Updated this week
- ☆129Jan 29, 2024Updated 2 years ago
- APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the …☆1,405Nov 7, 2024Updated last year
- Interesting APT Report Collection And Some Special IOCs☆2,955Updated this week
- Sophos-originated indicators-of-compromise from published reports☆652Jan 16, 2026Updated 2 months ago
- TweetFeed collects Indicators of Compromise (IOCs) shared by the infosec community at Twitter. Here you will find malicious URLs, domains…☆640Updated this week
- Indicators of Compromises (IOC) of our various investigations☆1,933Mar 10, 2026Updated last week
- ☆96May 5, 2025Updated 10 months ago
- Signatures and IoCs from public Volexity blog posts.☆366Dec 4, 2025Updated 3 months ago
- Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).☆806Jan 14, 2026Updated 2 months ago
- Collection of Event ID ressources useful for Digital Forensics and Incident Response☆644Jun 19, 2024Updated last year
- ☆66Jan 27, 2023Updated 3 years ago
- YARA signature and IOC database for my scanners and tools☆2,884Mar 9, 2026Updated last week
- Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.☆613Dec 8, 2025Updated 3 months ago
- Just some lists of Malware Configs☆173Jan 9, 2025Updated last year
- Threat Hunting tool about Sysmon and graphs☆337May 28, 2023Updated 2 years ago
- KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunt…☆1,661Mar 9, 2026Updated last week
- The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifa…☆648Nov 7, 2025Updated 4 months ago
- Misc Threat Hunting Resources☆377Jan 26, 2023Updated 3 years ago
- A repository of DFIR-related Mind Maps geared towards the visual learners!☆549Sep 2, 2022Updated 3 years ago
- Malware samples, analysis exercises and other interesting resources.☆1,621Jan 13, 2024Updated 2 years ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆141Nov 19, 2023Updated 2 years ago
- Documentation and scripts to properly enable Windows event logs.☆673Oct 3, 2025Updated 5 months ago
- A toolset to make a system look as if it was the victim of an APT attack☆2,722Sep 23, 2025Updated 5 months ago
- Elastic Security detection content for Endpoint☆1,389Updated this week
- Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows…☆2,077Dec 11, 2024Updated last year
- Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups☆723Dec 26, 2022Updated 3 years ago
- ☆32Mar 11, 2026Updated last week
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆1,062Oct 5, 2023Updated 2 years ago
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,476Mar 2, 2026Updated 2 weeks ago
- ☆553Dec 4, 2023Updated 2 years ago
- This repository contains indicators of compromise (IOCs) of our various investigations.☆314Nov 4, 2025Updated 4 months ago
- Rules generated from our investigations.☆204Jun 17, 2025Updated 9 months ago
- Awesome list of keywords and artifacts for Threat Hunting sessions☆648Aug 4, 2025Updated 7 months ago
- WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)☆779Feb 3, 2023Updated 3 years ago
- Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.☆3,062Feb 24, 2026Updated 3 weeks ago