mandiant / iocs
FireEye Publicly Shared Indicators of Compromise (IOCs)
☆463Updated 6 years ago
Alternatives and similar repositories for iocs:
Users that are interested in iocs are comparing it to the libraries listed below
- Tool to extract indicators of compromise from security reports in PDF format☆433Updated last year
- Automatic Yara Rule Generation☆331Updated 9 years ago
- Modified edition of cuckoo☆396Updated 7 years ago
- Indicators from Unit 42 Public Reports☆707Updated 3 weeks ago
- ☆201Updated last year
- DPS' Lightweight Investigation Notebook☆427Updated last year
- 16,432 Free Yara rules created by☆381Updated 5 years ago
- CRITs - Collaborative Research Into Threats☆897Updated 5 years ago
- DEPRECATED - USE v3 (bearded-avenger)☆227Updated 7 years ago
- Clusters and elements to attach to MISP events or attributes (like threat actors)☆553Updated this week
- Modular file scanning/analysis framework☆619Updated 5 years ago
- Documentation of TheHive☆396Updated last year
- Malware Configuration And Payload Extraction☆751Updated 2 months ago
- Threat Report ATT&CK™ Mapping (TRAM) is a tool to aid analyst in mapping finished reports to ATT&CK.☆348Updated 3 years ago
- Modules for expansion services, enrichment, import and export in MISP and other tools.☆353Updated last week
- Web interface for the Volatility Memory Forensics Framework☆260Updated 7 years ago
- ☆275Updated last year
- Data from a BRAWL Automated Adversary Emulation Exercise☆203Updated 4 years ago
- File Scanning Framework☆290Updated 3 years ago
- ☆1,062Updated 5 years ago
- FAME Automates Malware Evaluation☆878Updated this week
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆336Updated 2 years ago
- Tools, techniques, cheat sheets, and other resources to assist those defending organizations and detecting adversaries☆443Updated 3 years ago
- ☆127Updated 3 years ago
- Modified edition of cuckoo☆270Updated 5 years ago
- User guide of MISP☆266Updated last month
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆498Updated 2 years ago
- The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).☆541Updated last year
- Python Script to access ATT&CK content available in STIX via a public TAXII server☆559Updated last month
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago