fhightower / ioc-finderLinks
Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security related information) from text. It uses grammars rather than regexes which makes it more readable, maintainable, and hackable. Explore our interactive documentation here: https://hightower.space/ioc-finder/
☆171Updated last year
Alternatives and similar repositories for ioc-finder
Users that are interested in ioc-finder are comparing it to the libraries listed below
Sorting:
- A python app to predict Att&ck tactics and techniques from cyber threat reports☆126Updated last year
- OASIS TC Open Repository: TAXII 2 Server Library Written in Python☆133Updated last year
- Threat Report ATT&CK™ Mapping (TRAM) is a tool to aid analyst in mapping finished reports to ATT&CK.☆353Updated 4 years ago
- Defanged Indicator of Compromise (IOC) Extractor.☆549Updated last year
- Definition, description and relationship types of MISP objects☆101Updated 3 weeks ago
- Graphics, icons, and diagrams to support STIX 2☆47Updated 4 years ago
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆189Updated 4 years ago
- A (nearly) production ready Dockered MISP☆231Updated last year
- OASIS TC Open Repository: Lightweight visualization for STIX 2.0 objects and relationships☆156Updated 5 months ago
- A tool to extract structured cyber information from incident reports.☆81Updated 7 years ago
- OpenCTI Python Client☆143Updated this week
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆105Updated last year
- OASIS TC Open Repository: Non-normative schemas and examples for STIX 2☆128Updated 2 months ago
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆264Updated 2 years ago
- OASIS TC Open Repository: TAXII 2 Client Library Written in Python☆117Updated last year
- Mapping NSM rules to MITRE ATT&CK☆72Updated 5 years ago
- Sigma rules from Joe Security☆221Updated 11 months ago
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆357Updated last month
- MISP Docker (XME edition)☆283Updated last year
- Place for resources used during the Mordor Detection hackathon event featuring APT29 ATT&CK evals datasets☆140Updated 5 years ago
- OASIS Cyber Threat Intelligence (CTI) TC: A repository for commonly used STIX objects in order to avoid needless duplication. https://gi…☆96Updated 4 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆156Updated 7 months ago
- Swagger/ OpenAPI specifications for security products and services☆77Updated last month
- Security ML models encoded as Yara rules☆213Updated 2 years ago
- ☆175Updated last year
- Tool to extract indicators of compromise from security reports in PDF format☆74Updated last year
- ☆166Updated 4 years ago
- TAXII server implementation in Python from EclecticIQ☆206Updated last year
- Log Entry to Sigma Rule Converter☆109Updated 3 years ago
- Tools to interact with APTnotes reporting/index.☆104Updated 5 years ago