Raw data from Threat Intelligence Reports with automatic reports collection and keyword search across thousands of reports
☆171Aug 28, 2026Updated this week
Alternatives and similar repositories for ThreatIntel-Reports
Users that are interested in ThreatIntel-Reports are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆205Dec 20, 2024Updated last year
- Awesome Security lists for SOC/CERT/CTI☆1,893Updated this week
- yara detection rules for hunting with the threathunting-keywords project☆166May 11, 2025Updated last year
- Living of the Land of Free SaaS☆84Mar 22, 2026Updated 5 months ago
- Awesome list of keywords and artifacts for Threat Hunting sessions☆673Aug 4, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Browser extension blocking scam and phishing pages https://chromewebstore.google.com/detail/nehboro/ljgklnaofelbcnegjniagpmjknkmaiom☆16Apr 22, 2026Updated 4 months ago
- Repository where I hold random detection and threat hunting queries that I come up with based on different sources of information (or eve…☆289Jun 23, 2026Updated 2 months ago
- Sigma detection rules for hunting with the threathunting-keywords project☆60Mar 2, 2025Updated last year
- A collection of CVEs weaponized by ransomware operators☆152Jun 28, 2026Updated 2 months ago
- Collect Windows telemetry for Maldev☆504Aug 14, 2026Updated 2 weeks ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆219Updated this week
- ☆16May 3, 2024Updated 2 years ago
- A curated list of Awesome Threat Intelligence Blogs☆558Jun 12, 2026Updated 2 months ago
- rust port of pspy with support for process monitoring over dbus☆39Jan 4, 2026Updated 7 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A home for detection content developed by the delivr.to team☆75Aug 10, 2025Updated last year
- lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection☆338Jul 22, 2026Updated last month
- This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom …☆1,123Aug 3, 2026Updated 3 weeks ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆123Oct 29, 2024Updated last year
- Detection rules and threat hunting queries in Defender XDR and Azure Sentinel☆17Mar 13, 2026Updated 5 months ago
- A QoL tool to obfuscate shellcode.☆28Jun 2, 2026Updated 2 months ago
- A Large Action Model designed to operate on MacOS or Windows which interacts with common C2 interfaces such as Cobalt Strike, Havoc, or B…☆26Feb 29, 2024Updated 2 years ago
- DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret …☆345Aug 24, 2026Updated last week
- Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨☆74Jun 17, 2026Updated 2 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆927Aug 14, 2026Updated 2 weeks ago
- ThreatCheck - Select any indicator of compromise on any web page - or highlight an entire paragraph from a threat report - and instantly …☆34May 6, 2026Updated 3 months ago
- All the useful tools interesting to be used☆25Sep 20, 2022Updated 3 years ago
- A COFF Loader written in Rust☆146Dec 1, 2025Updated 8 months ago
- This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple…☆885Updated this week
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆81Apr 27, 2024Updated 2 years ago
- Web-based IOC management platform with threat intelligence enrichment for SOC teams☆22Jun 20, 2026Updated 2 months ago
- Mapping of open-source detection rules and atomic tests.☆215Jul 15, 2026Updated last month
- Interesting APT Report Collection And Some Special IOCs☆3,086Aug 22, 2026Updated last week
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- A resource containing all the tools each ransomware gangs uses☆1,434Updated this week
- A Pentesters Confluence Keyword Scanner☆21Dec 3, 2024Updated last year
- Kassandra is a custom Mythic C2 agent written in Rust, containerized via a Python-based builder☆24Jul 31, 2026Updated last month
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆76Feb 9, 2024Updated 2 years ago
- Live Feed of C2 servers, tools, and botnets☆784Apr 13, 2026Updated 4 months ago
- Indicators of compromise☆19May 18, 2026Updated 3 months ago
- Lnk crafting and research tools☆185Mar 4, 2026Updated 5 months ago