open-source-rs / The-Cyber-Intelligence-Analyst-CookbookLinks
For storing of the volumes
☆4Updated 5 years ago
Alternatives and similar repositories for The-Cyber-Intelligence-Analyst-Cookbook
Users that are interested in The-Cyber-Intelligence-Analyst-Cookbook are comparing it to the libraries listed below
Sorting:
- References for FIRST CTI 2019 Symposium presentation☆22Updated 6 years ago
- Open source training materials for law-enforcement and organisations interested in DFIR.☆59Updated 2 months ago
- Collection of best practices to add OSINT into MISP and/or MISP communities☆66Updated last year
- Home to the ActorTrackr source code☆29Updated 7 years ago
- automate your MISP installs☆68Updated 5 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- PROJECT PAUSED 1/11/22, Tracking Threat Actor Emails in Phishing Kits. CC @PhishKitTracker on twitter if you find a #threatactoremail in …☆101Updated 3 years ago
- Expert Investigation Guides☆52Updated 4 years ago
- A tool to assess data quality, built on top of the awesome OSSEM.☆78Updated 3 years ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆63Updated last year
- Website crawler with YARA detection☆88Updated last year
- Slides and Other Resources from my latest Talks and Presentations☆24Updated 4 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆102Updated 3 weeks ago
- Hunting IOCs all day every day...☆86Updated last year
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆109Updated 7 years ago
- Specifications used in the MISP project including MISP core format☆51Updated last month
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆48Updated 2 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- misp-cloud - Cloud-ready images of MISP☆73Updated 2 years ago
- The Fastest way to consume Threat Intel☆26Updated 3 years ago
- A toolkit for Security Researchers☆127Updated 5 years ago
- pocket guide for core threat hunting concepts☆23Updated 5 years ago
- Tools for the Computer Incident Response Team☆144Updated 8 years ago
- Term concordances for each course in the SANS DFIR curriculum. Used for automated index generation.☆67Updated 4 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 4 years ago
- Deploy MISP Project software with Vagrant.☆43Updated 5 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆121Updated 4 years ago
- Imports Alienvault OTX pulses to a MISP instance☆53Updated 3 years ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 6 years ago