opencybersecurityalliance / stix-shifterLinks
This project consists of an open source library allowing software to connect to data repositories using STIX Patterning, and return results as STIX Observations.
☆249Updated last week
Alternatives and similar repositories for stix-shifter
Users that are interested in stix-shifter are comparing it to the libraries listed below
Sorting:
- Kestrel threat hunting language: building reusable, composable, and shareable huntflows across different data sources and threat intel.☆321Updated last year
- This is a repository of vendor-agnostic workflows provided for those interested in deploying Security Orchestration, Automation, and Resp…☆88Updated 4 years ago
- This content is analysis and research of the data sources currently listed in ATT&CK.☆411Updated 2 years ago
- OASIS TC Open Repository: Python APIs for STIX 2☆403Updated 6 months ago
- OASIS TC Open Repository: TAXII 2 Server Library Written in Python☆133Updated last year
- OASIS TC Open Repository: Lightweight visualization for STIX 2.0 objects and relationships☆156Updated 6 months ago
- OASIS TC Open Repository: Non-normative schemas and examples for STIX 2☆128Updated 3 months ago
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆388Updated last week
- OASIS TC Open Repository: Validator for STIX 2.0 JSON normative requirements and best practices☆58Updated 3 months ago
- A (nearly) production ready Dockered MISP☆231Updated last year
- OASIS TC Open Repository: TAXII 2 Client Library Written in Python☆117Updated last year
- OASIS Cyber Threat Intelligence (CTI) TC: A repository for commonly used STIX objects in order to avoid needless duplication. https://gi…☆96Updated 4 months ago
- Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.☆284Updated last week
- Public static website for the D3FEND project. For the D3FEND ontology repo see: https://github.com/d3fend/d3fend-ontology☆86Updated 2 months ago
- Source code for IBM SOAR Apps that are available on our App Exchange☆92Updated last week
- SIEGMA - Transform Sigma rules into SIEM consumables☆156Updated 7 months ago
- TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE AT…☆522Updated 5 months ago
- User guide of MISP☆280Updated 9 months ago
- CASCADE Server☆272Updated 2 years ago
- Python API Client for TheHive☆232Updated 3 weeks ago
- 🚨ATTENTION🚨 The CVE mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as…☆241Updated last year
- The principal objective of this project is to develop a knowledge base of the tactics, techniques, and procedures (TTPs) used by insiders…☆146Updated 3 months ago
- Python library using the MISP Rest API☆474Updated last week
- Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security relate…☆171Updated last year
- Threat Report ATT&CK™ Mapping (TRAM) is a tool to aid analyst in mapping finished reports to ATT&CK.☆353Updated 4 years ago
- STIX data representing MITRE ATT&CK☆468Updated 2 months ago
- A Python package to interact with the Mitre ATT&CK Framework☆477Updated 2 years ago
- 🚨ATTENTION🚨 The NIST 800-53 mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept…☆497Updated last year
- Sigma rules from Joe Security☆223Updated 11 months ago
- MISP trainings, threat intel and information sharing training materials with source code☆419Updated 5 months ago