kinomakino / Threat-Intelligence-Data
Snort_rules detection bad actors.
☆28Updated 8 months ago
Alternatives and similar repositories for Threat-Intelligence-Data
Users that are interested in Threat-Intelligence-Data are comparing it to the libraries listed below
Sorting:
- Use DNS to hunt for threats including DGAs☆15Updated 9 years ago
- The Fastest way to consume Threat Intel☆25Updated 3 years ago
- ☆30Updated 6 years ago
- A python script to query the MITRE ATT&CK API for tactics, techniques, mitigations, & detection methods for specific threat groups.☆66Updated 6 years ago
- Python parser for Red Canary's Atomic Red Team Yamls☆27Updated 6 years ago
- ☆13Updated 5 years ago
- An extendable tool to extract and aggregate IoCs from threat feeds☆33Updated last year
- Easy way to create a MISP event related to a Phishing page☆17Updated last year
- A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.☆14Updated 6 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Updated 7 years ago
- Deploy MISP Project software with Vagrant.☆43Updated 4 years ago
- Build your own threat hunting maturity model☆11Updated 7 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 7 years ago
- repo for sharing stuff☆16Updated last year
- Home to the ActorTrackr source code☆29Updated 7 years ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- A simple ReST server to lookup threat actors (by name, synonym or UUID) and returning the corresponding MISP galaxy information about the…☆48Updated last year
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- The Shodan monitoring tools allows you to monitor shodan listed servers basis on the filter you provided☆33Updated 3 years ago
- Tool to identify all domains contained in an IP anonymously☆15Updated 7 years ago
- Splunk Add-on for PowerShell provides field extraction for PowerShell event logs.☆17Updated 4 years ago
- Six Degrees of Domain Admin☆15Updated 7 years ago
- hassh-utils: Nmap NSE Script and Docker image for HASSH - the SSH client/server fingerprinting method (https://github.com/salesforce/hass…☆57Updated 7 months ago
- Indices for courses in SANS' Network Security Operations curriculum☆15Updated 9 years ago
- Security Onion Elastic Stack☆46Updated 4 years ago
- Modular command-line threat hunting tool & framework.☆17Updated 4 years ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 5 years ago
- Audit Powershell and search from known keywords in history #Blueteam☆25Updated 5 years ago
- Threat Intel and Incident Reponse☆10Updated 6 years ago
- References for FIRST CTI 2019 Symposium presentation☆22Updated 6 years ago