A list of useful CyberChef recipes
☆17Jun 20, 2025Updated last year
Alternatives and similar repositories for CyberChef-recipes
Users that are interested in CyberChef-recipes are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A project designed to make the operationalization of open-source cyber threat intelligence more efficient.☆19Updated this week
- This repository contains various threat hunting tools written in Python and is documented in the series Python Threat Hunting Tools which…☆19Nov 16, 2023Updated 2 years ago
- A collection of CyberChef recipes for decoding and decrypting strings in HTML attachments☆11Jul 10, 2024Updated 2 years ago
- Import AbuseCH IOC Feeds into MISP☆12Feb 17, 2021Updated 5 years ago
- Automated YARA rule generation from the Cert Central compromised certificate database.☆15Updated this week
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- A collection of cyberchef recipes for use in osint investigations☆14Jul 2, 2022Updated 4 years ago
- MCP server with 55 security intelligence tools — CVE/KEV, MITRE ATLAS+D3FEND, Sigma detection rules, email security posture (SPF/DMARC), …☆33Updated this week
- Rules Shared by the Community from 100 Days of YARA 2023 -☆19Apr 10, 2023Updated 3 years ago
- AFL with QEMU 3.1.0 + optimizations (thread safe this time) from https://github.com/abiondo/afl☆10Mar 12, 2019Updated 7 years ago
- Parses the WMI object database....looking for persistence☆35Dec 12, 2019Updated 6 years ago
- On-Premises Open Cyber Threat Intelligence Platform☆11Oct 29, 2024Updated last year
- CAPE monitor DLLs☆42Dec 3, 2019Updated 6 years ago
- Debugger and analyzer for ARM ELF executables.☆18Oct 24, 2022Updated 3 years ago
- Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨☆74Jun 17, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Turn a supported list of filetypes (e.g. .docx) into a markdown structured text file. Also optionally defangs indicators and extract text…☆12Aug 3, 2026Updated 3 weeks ago
- Spydi ThreatIntel Feed is built on open-source threat intelligence, community-maintained blocklists, and public security research.☆55Updated this week
- Rebuild of portspoof in GO with additional features.☆32Apr 7, 2026Updated 4 months ago
- A collection of my public YARA signatures for various malware families☆30Sep 20, 2024Updated last year
- SVG Analysis and generation tools for commonly seen SVG attachment phishing☆57Sep 24, 2025Updated 11 months ago
- Simple command line integration to Chat GPT☆11Jan 23, 2023Updated 3 years ago
- MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indi…☆15Dec 24, 2023Updated 2 years ago
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆12Aug 14, 2025Updated last year
- Validate IOC from MISP ; Export results and iocs to SIEM and sensors using syslog and CEF format☆14Sep 13, 2016Updated 9 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Python interface to the CRITs API☆22Mar 10, 2017Updated 9 years ago
- Scraping darknet forums has been the object of research in the field of intelligence and security informatics. In this repository we scr…☆11May 18, 2023Updated 3 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆17Apr 11, 2024Updated 2 years ago
- SACTI - Securely aggregate CTI sightings and report them on MISP☆14Oct 24, 2022Updated 3 years ago
- String extraction and classification tool for binary files, designed to extract only the strings that can be considered relevant (i.e. no…☆12Aug 9, 2020Updated 6 years ago
- A practical resource on using open-source tools for Incident Response. This repo shares workflows, tool setups, and steps for responding …☆38Nov 4, 2024Updated last year
- Extracts selected MISP attributes, including IP addresses, URLs, and hashes, into reusable output files.☆16Feb 6, 2023Updated 3 years ago
- Display latest Cyber Security News within your PiMirror☆10Feb 23, 2021Updated 5 years ago
- Defensomania is a security monitoring and incident response card game.☆66May 24, 2023Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- My small projects writen in 16 bit asm (NOTE: those are my practice projects that I wrote when I was 15, I give no warranty for this code…☆22Oct 14, 2021Updated 4 years ago
- A comprehensive GenAI protection system designed to protect against malicious prompts, injection attacks, and harmful content. System inc…☆107Aug 20, 2026Updated last week
- Investigation toolkit for Claude Code: case management, OSINT, structured analytic techniques, chain-of-custody evidence capture, and bun…☆50Jul 6, 2026Updated last month
- ☆20Apr 17, 2026Updated 4 months ago
- PyCon Italia Beginners' Day Workshop☆10Jun 9, 2022Updated 4 years ago
- the fastest way to consume threat intelligence.☆30Mar 9, 2023Updated 3 years ago
- A Shodan-based tool to discover publicly exposed Ollama instances and list available LLM models.☆22May 27, 2025Updated last year