Raw data from Threat Intelligence Reports with automatic reports collection and keyword search across thousands of reports
☆153Updated this week
Alternatives and similar repositories for ThreatIntel-Reports
Users that are interested in ThreatIntel-Reports are comparing it to the libraries listed below
Sorting:
- Awesome list of keywords and artifacts for Threat Hunting sessions☆638Aug 4, 2025Updated 6 months ago
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆192Dec 20, 2024Updated last year
- lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection☆256Jan 29, 2026Updated last month
- Collect Windows telemetry for Maldev☆460Jan 30, 2026Updated last month
- yara detection rules for hunting with the threathunting-keywords project☆157May 11, 2025Updated 9 months ago
- Kibana app for RedELK☆18Mar 19, 2023Updated 2 years ago
- Awesome Security lists for SOC/CERT/CTI☆1,257Updated this week
- Sigma detection rules for hunting with the threathunting-keywords project☆58Mar 2, 2025Updated 11 months ago
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆83Apr 27, 2024Updated last year
- Repository where I hold random detection and threat hunting queries that I come up with based on different sources of information (or eve…☆277Dec 20, 2025Updated 2 months ago
- rust port of pspy with support for process monitoring over dbus☆35Jan 4, 2026Updated last month
- Abusing Azure services over C2☆368Jan 20, 2026Updated last month
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆14Jul 13, 2022Updated 3 years ago
- Unix Process hollowing in rust☆22Dec 16, 2024Updated last year
- A resource containing all the tools each ransomware gangs uses☆1,330Dec 24, 2025Updated 2 months ago
- Generic PE loader for fast prototyping evasion techniques☆244Jul 2, 2024Updated last year
- A COFF Loader written in Rust☆136Dec 1, 2025Updated 2 months ago
- ☆53Sep 23, 2025Updated 5 months ago
- Shellcode loader that executes embedded Lua from Rust.☆127Dec 16, 2024Updated last year
- Abuse leaked token handles.☆136Dec 14, 2023Updated 2 years ago
- A Pentesters Confluence Keyword Scanner☆17Dec 3, 2024Updated last year
- Example of a serverless web reconaissance workflow's AWS architecture.☆11Feb 25, 2023Updated 3 years ago
- ☆15May 3, 2024Updated last year
- Various commands, tools, techniques that you can use to examine live Windows systems for signs of Compromise or for Threat Hunting.Can al…☆14Aug 15, 2022Updated 3 years ago
- This is the Git repository for the Modern Red Teaming workshop given at SINCON2024.☆12May 23, 2024Updated last year
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆75Feb 9, 2024Updated 2 years ago
- GPOAnalyzer is a tool designed to assist in parsing domain Group Policy Object (GPO) files located in the SYSVOL directory.☆28Jun 14, 2024Updated last year
- A Large Action Model designed to operate on MacOS or Windows which interacts with common C2 interfaces such as Cobalt Strike, Havoc, or B…☆26Feb 29, 2024Updated 2 years ago
- Nemesis agent for Mythic☆28Dec 11, 2025Updated 2 months ago
- Deobfuscation of XorStringsNet☆14Nov 5, 2024Updated last year
- A repository to store community malware research notes and findings.☆15Feb 13, 2026Updated 2 weeks ago
- Terms of Use Conditional Access M365 Evilginx Phishlet☆44Jun 23, 2025Updated 8 months ago
- Items related to the RedELK workshop given at security conferences☆29Sep 28, 2023Updated 2 years ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆144Updated this week
- IOCs collected during day-to-day activities☆109Updated this week
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆116Oct 29, 2024Updated last year
- malware written for educational purposes☆71Dec 31, 2025Updated 2 months ago
- ☆121Nov 21, 2024Updated last year
- DFIQ is a collection of investigative questions and the approaches for answering them☆300Jan 17, 2025Updated last year