infobloxopen / threat-intelligenceLinks
☆105Updated last month
Alternatives and similar repositories for threat-intelligence
Users that are interested in threat-intelligence are comparing it to the libraries listed below
Sorting:
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆110Updated last year
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆132Updated last year
- Import CrowdStrike Threat Intelligence into your instance of MISP☆50Updated 7 months ago
- ☆101Updated last month
- ☆105Updated 6 months ago
- A tool that allows you to document and assess any security automation in your SOC☆48Updated last year
- Web based S1 query navigator for one-click threat hunting☆24Updated 5 years ago
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- Anvilogic Forge☆114Updated 4 months ago
- Fast IOC and YARA Scanner☆88Updated 5 years ago
- A repository of my own Sigma detection rules.☆163Updated 2 months ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆115Updated last year
- MISP to Sentinel integration☆79Updated last month
- Indicators of Compromise☆247Updated 2 weeks ago
- Playbook-NG is a stateless web-based application used to match incident findings with countermeasures for adversary containment and evict…☆156Updated last month
- Standard-Format Threat Intelligence Feeds☆126Updated this week
- Conference presentations☆60Updated 3 months ago
- Sample programs to access the API☆100Updated last month
- MISP Playbooks☆222Updated 3 months ago
- A security analysis tool that identifies DNS queries made by browser extensions, empowering security teams to detect and investigate susp…☆185Updated 11 months ago
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆53Updated last year
- An index of publicly available and open-source threat detection rulesets.☆131Updated 9 months ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆168Updated last month
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆67Updated last year
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆78Updated this week
- Convert Sigma rules to SIEM queries, directly in your browser.☆107Updated this week
- Dettectinator - The Python library to your DeTT&CT YAML files.☆119Updated last week
- Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations☆102Updated 5 months ago
- DShield Sensor Log Collection with ELK☆44Updated this week
- Collection of useful Canary tools☆93Updated this week