infobloxopen / threat-intelligence
☆74Updated last week
Alternatives and similar repositories for threat-intelligence
Users that are interested in threat-intelligence are comparing it to the libraries listed below
Sorting:
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 6 months ago
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆103Updated 7 months ago
- A collection of tips for using MISP.☆74Updated 5 months ago
- Sample programs to access the API☆81Updated 3 weeks ago
- ☆88Updated 3 months ago
- MISP to Sentinel integration☆67Updated last month
- ☆118Updated last year
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆73Updated 5 months ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆46Updated 2 months ago
- Azure function to insert MISP data in to Azure Sentinel☆32Updated 2 years ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆27Updated 3 weeks ago
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆39Updated this week
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆122Updated last year
- ☆26Updated last month
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆111Updated 5 months ago
- Standard-Format Threat Intelligence Feeds☆112Updated this week
- A collection of various SIEM rules relating to malware family groups.☆66Updated 10 months ago
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆63Updated last year
- Synthetic Adversarial Log Objects: A Framework for synthentic log generation☆81Updated last year
- ☆83Updated 2 months ago
- Docker image for MISP☆127Updated last month
- User Feedback Space of #MitreAssistant☆37Updated last year
- A preconfigured Velociraptor triage collector☆51Updated this week
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- ☆83Updated 2 months ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆67Updated last year
- Fast IOC and YARA Scanner☆79Updated 5 years ago
- Web based S1 query navigator for one-click threat hunting☆19Updated 4 years ago
- MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats☆54Updated this week
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated 3 weeks ago