fhightower / ioc-finderLinks
Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security related information) from text. It uses grammars rather than regexes which makes it more readable, maintainable, and hackable. Explore our interactive documentation here: https://hightower.space/ioc-finder/
☆178Updated 2 years ago
Alternatives and similar repositories for ioc-finder
Users that are interested in ioc-finder are comparing it to the libraries listed below
Sorting:
- A python app to predict Att&ck tactics and techniques from cyber threat reports☆128Updated 2 years ago
- OASIS TC Open Repository: Lightweight visualization for STIX 2.0 objects and relationships☆159Updated 8 months ago
- Threat Report ATT&CK™ Mapping (TRAM) is a tool to aid analyst in mapping finished reports to ATT&CK.☆355Updated 4 years ago
- Defanged Indicator of Compromise (IOC) Extractor.☆557Updated last year
- Sigma rules from Joe Security☆229Updated last year
- A (nearly) production ready Dockered MISP☆230Updated last year
- Definition, description and relationship types of MISP objects☆103Updated last week
- Graphics, icons, and diagrams to support STIX 2☆47Updated 4 years ago
- STIX 2.1 Visualizer, Attack and Activity Thread Graph for Threat Modeling☆33Updated last year
- Mapping NSM rules to MITRE ATT&CK☆73Updated 5 years ago
- OpenCTI Python Client☆143Updated last month
- OASIS TC Open Repository: Non-normative schemas and examples for STIX 2☆131Updated 2 months ago
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆361Updated 2 weeks ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆157Updated 9 months ago
- A tool to extract structured cyber information from incident reports.☆82Updated 7 years ago
- OASIS TC Open Repository: TAXII 2 Server Library Written in Python☆137Updated last year
- OASIS Cyber Threat Intelligence (CTI) TC: A repository for commonly used STIX objects in order to avoid needless duplication. https://gi…☆98Updated 7 months ago
- ☆167Updated 4 years ago
- ☆175Updated last year
- Cortex Analyzers Repository☆470Updated this week
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆91Updated last month
- MISP Docker (XME edition)☆283Updated 2 years ago
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆190Updated 4 years ago
- STIX2 graph visualisation library in JS☆94Updated last month
- Tool to extract indicators of compromise from security reports in PDF format☆75Updated last year
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 5 months ago
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆269Updated 2 years ago
- This content is analysis and research of the data sources currently listed in ATT&CK.☆414Updated 2 years ago
- Place for resources used during the Mordor Detection hackathon event featuring APT29 ATT&CK evals datasets☆145Updated 5 years ago
- Open platform for modelling, collection and exchange of knowledge☆163Updated 7 months ago