infobloxopen / threat-intelligenceLinks
☆103Updated last month
Alternatives and similar repositories for threat-intelligence
Users that are interested in threat-intelligence are comparing it to the libraries listed below
Sorting:
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆110Updated last year
- A tool that allows you to document and assess any security automation in your SOC☆48Updated last year
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆132Updated last year
- ☆101Updated last month
- MISP to Sentinel integration☆79Updated last month
- ☆105Updated 6 months ago
- Indicators of Compromise☆247Updated this week
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- Fast IOC and YARA Scanner☆88Updated 5 years ago
- A collection of tips for using MISP.☆75Updated last year
- Sample programs to access the API☆99Updated last month
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆125Updated 2 years ago
- Standard-Format Threat Intelligence Feeds☆125Updated this week
- Import CrowdStrike Threat Intelligence into your instance of MISP☆50Updated 7 months ago
- A repository of my own Sigma detection rules.☆163Updated last month
- ☆88Updated 10 months ago
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆76Updated last month
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆52Updated last week
- Playbook-NG is a stateless web-based application used to match incident findings with countermeasures for adversary containment and evict…☆156Updated last month
- Anvilogic Forge☆114Updated 4 months ago
- Collection of Jupyter Notebooks by @fr0gger_☆188Updated last month
- ☆28Updated last month
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆114Updated last year
- Azure function to insert MISP data in to Azure Sentinel☆34Updated 3 years ago
- Dettectinator - The Python library to your DeTT&CT YAML files.☆119Updated 9 months ago
- MISP Playbooks☆221Updated 3 months ago
- This repository contains various threat hunting tools written in Python and is documented in the series Python Threat Hunting Tools which…☆18Updated 2 years ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆168Updated last month
- Web based S1 query navigator for one-click threat hunting☆24Updated 5 years ago
- This repository contains supplemental items including IOCs, and signatures discussed in Huntress blogposts, and other media.☆45Updated 2 weeks ago