mlsecproject / combine
Tool to gather Threat Intelligence indicators from publicly available sources
☆658Updated 6 years ago
Alternatives and similar repositories for combine:
Users that are interested in combine are comparing it to the libraries listed below
- Threat Intelligence APIs☆277Updated last year
- DEPRECATED - USE v3 (bearded-avenger)☆228Updated 7 years ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆464Updated 6 years ago
- DPS' Lightweight Investigation Notebook☆427Updated last year
- CRITs - Collaborative Research Into Threats☆900Updated 5 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆434Updated 2 years ago
- Clearcut is a tool that uses machine learning to help you focus on the log entries that really need manual review☆197Updated 8 years ago
- 16,432 Free Yara rules created by☆383Updated 5 years ago
- Threat Intelligence Quotient Test - Dataviz and Statistical Analysis of TI feeds☆174Updated 9 years ago
- An analytical framework for network traffic and behavioral analytics☆450Updated 2 years ago
- Honeypot Intelligence with Splunk☆254Updated 6 years ago
- A Python library for parsing, manipulating, and generating STIX content.☆243Updated 3 years ago
- ☆307Updated 7 years ago
- Alienvault Labs Projects Random Stuff☆520Updated 3 years ago
- Machinae Security Intelligence Collector☆508Updated 10 months ago
- Modular file scanning/analysis framework☆618Updated 5 years ago
- File Scanning Framework☆292Updated 3 years ago
- The Correlated CVE Vulnerability And Threat Intelligence Database API☆941Updated 3 years ago
- A low to medium interaction honeypot.☆466Updated last year
- The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).☆543Updated last year
- Sandia Cyber Omni Tracker (SCOT)☆246Updated 4 months ago
- CIF v3 -- the fastest way to consume threat intelligence☆183Updated last year
- A tool to retrieve malware directly from the source for security researchers.☆562Updated 7 years ago
- Web interface for the Volatility Memory Forensics Framework☆260Updated 7 years ago
- Version 2 of the ThreatCrowd API☆269Updated 2 years ago
- ☆202Updated last year
- An open source framework for enterprise level automated analysis.☆395Updated 2 years ago
- Documentation of TheHive☆396Updated last year
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,024Updated last week
- Malcom - Malware Communications Analyzer☆1,158Updated 7 years ago