keithjjones / hostintelLinks
A modular Python application to collect intelligence for malicious hosts.
☆270Updated 4 years ago
Alternatives and similar repositories for hostintel
Users that are interested in hostintel are comparing it to the libraries listed below
Sorting:
- The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).☆550Updated 2 years ago
- Open Source Threat Intelligence Chat Bot☆321Updated 5 years ago
- TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs…☆156Updated 5 months ago
- DPS' Lightweight Investigation Notebook☆433Updated last year
- Version 2 of the ThreatCrowd API☆271Updated 2 years ago
- Machinae Security Intelligence Collector☆537Updated last year
- ☆175Updated 4 years ago
- 16,432 Free Yara rules created by☆390Updated 6 years ago
- Threat Intelligence APIs☆282Updated 2 years ago
- A Python RESTful API framework for online malware analysis and threat intelligence services.☆369Updated last year
- A modular Python application to pull intelligence about malicious files☆123Updated 5 years ago
- CIF v3 -- the fastest way to consume threat intelligence☆183Updated 2 years ago
- ☆307Updated 8 years ago
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆370Updated 6 years ago
- Query and report user logons relations from MS Windows Security Events☆243Updated 7 years ago
- ☆206Updated 2 years ago
- Automated Tactics Techniques & Procedures☆258Updated 2 years ago
- Sandia Cyber Omni Tracker (SCOT)☆252Updated last year
- A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.☆487Updated 4 years ago
- Test Blue Team detections without running any attack.☆271Updated last year
- The Python SDK for AlienVault OTX☆392Updated last year
- A live dashboard for a real-time overview of threat intelligence from MISP instances☆204Updated 2 years ago
- STIX Visualization Tool☆110Updated 7 years ago
- Web interface for the Volatility Memory Forensics Framework☆260Updated 8 years ago
- Serverless, low cost, threat intel aggregation for enterprise or personal use, backed by ElasticSearch.☆141Updated 2 years ago
- An open source framework for enterprise level automated analysis.☆396Updated 3 years ago
- Code + documentation for the public GreyNoise API☆313Updated 4 years ago
- This repository contains all public indicators identified by 401trg during the course of our investigations. It also includes relevant ya…☆122Updated 4 years ago
- Information released publicly by NCC Group's Cyber Incident Response Team☆477Updated 3 years ago
- Threat Feed Aggregation, Made Easy☆169Updated 5 years ago