This repository contains supplemental items including IOCs, and signatures discussed in Huntress blogposts, and other media.
☆51Jul 7, 2026Updated last month
Alternatives and similar repositories for threat-intel
Users that are interested in threat-intel are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Indicators of compromise from to analysis and research by Nextron Threat Research team☆16Aug 11, 2026Updated last week
- ☆16Mar 22, 2023Updated 3 years ago
- ☆11Jun 12, 2023Updated 3 years ago
- Bulk indicator VirusTotal lookups supporting file hashes, domains and IPs.☆13May 28, 2025Updated last year
- ☆45Jul 11, 2025Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Public Chronicle Detection Rules☆12Apr 25, 2023Updated 3 years ago
- Yara Rules for Modern Malware☆80Mar 3, 2024Updated 2 years ago
- Everything related to YARA☆16Apr 18, 2026Updated 4 months ago
- Indicators of Normality☆11Jul 22, 2022Updated 4 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆104Updated this week
- A collection of various SIEM rules relating to malware family groups.☆69Jun 18, 2024Updated 2 years ago
- Indicators of compromise☆19May 18, 2026Updated 3 months ago
- Aether is a Windows memory-forensics and threat hunting tool that scans live process memory for malicious pattern, detect injection techn…☆58Jul 5, 2026Updated last month
- A Compiler from Sigma rules to VQL☆19May 18, 2026Updated 3 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ☆63Updated this week
- ☆22Dec 22, 2020Updated 5 years ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆24May 21, 2023Updated 3 years ago
- A repository of my own Sigma detection rules.☆167Nov 25, 2025Updated 8 months ago
- SACTI - Securely aggregate CTI sightings and report them on MISP☆14Oct 24, 2022Updated 3 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆93Mar 11, 2026Updated 5 months ago
- ☆14Jun 15, 2026Updated 2 months ago
- ☆97Apr 8, 2026Updated 4 months ago
- ☆14Mar 9, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A Productivity-Boosting Burp Suite extension written in Kotlin that enables persistent sticky session handling in web application testing…☆15Oct 8, 2025Updated 10 months ago
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆57Aug 7, 2026Updated last week
- ☆15Nov 25, 2021Updated 4 years ago
- ☆32Mar 11, 2026Updated 5 months ago
- A portable tool for parsing and analyzing Mach-O binaries.☆12Oct 31, 2015Updated 10 years ago
- Visualize Microsoft Defender XDR process trees and security events☆33Aug 24, 2025Updated 11 months ago
- Get started using Synapse Open-Source to start a Cortex and perform analysis within your area of expertise.☆51May 16, 2022Updated 4 years ago
- ☆85Sep 29, 2025Updated 10 months ago
- ☆21May 8, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A dotnet executable to get an Entra token in an authenticated runtime☆17Oct 30, 2024Updated last year
- Examine Chrome extensions for security issues☆98Nov 16, 2025Updated 9 months ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆97Nov 3, 2025Updated 9 months ago
- bad stuffs by bad guys☆49Jul 28, 2022Updated 4 years ago
- Creating an ATT&CK Navigator layer with the detection coverage of the signals available within Tanium Threat Response.☆11Jun 2, 2021Updated 5 years ago
- Microsoft Sentinel SIEM Log Source Analyzer☆29Jun 10, 2026Updated 2 months ago
- A few quick recipes for those that do not have much time during the day☆22Oct 28, 2024Updated last year