pstirparo / threatintel-resources
Resources, tools and utilities about Threat Intelligence
☆58Updated last year
Alternatives and similar repositories for threatintel-resources:
Users that are interested in threatintel-resources are comparing it to the libraries listed below
- Open source training materials for law-enforcement and organisations interested in DFIR.☆56Updated this week
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆115Updated last year
- A collection of tips for using MISP.☆74Updated last month
- Dictionary of CTI-related acronyms, terms, and jargon☆140Updated last year
- An open source platform to support analysts to organise their case and tasks☆64Updated this week
- Logbook for Digital Forensics and Incident Response☆50Updated 6 months ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆38Updated 8 months ago
- Intelligence Architecture Mind Map☆121Updated 10 months ago
- A repo to centralize some of the regular expressions I've found useful over the course of my DFIR career.☆89Updated 2 years ago
- Cyber Underground General Intelligence Requirements☆89Updated 11 months ago
- A list of Per-Reviewed Journals, Books and Blogs on intelligence and Cybersecurity☆21Updated 9 months ago
- Notes on managing and coordinating the response to major cyber incidents☆39Updated 4 years ago
- A MITRE ATT&CK Lookup Tool☆45Updated 8 months ago
- A GeoIP lookup utility utilizing ipinfo.io services.☆84Updated last year
- The Threat Actor Profile Guide for CTI Analysts☆102Updated last year
- A collaboration effort by the DFIR community to provide definitions (sometimes multiple) for common forensic terms!☆26Updated 2 years ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆44Updated 3 years ago
- A curated list of KAPE-related resources☆159Updated 8 months ago
- Python library for threat intelligence☆81Updated this week
- Tool used to perform threat intelligence against packet data☆35Updated last week
- Wrap any binary into a cached webserver☆53Updated 2 years ago
- Case_Notes.py is a cross-platform (Windows, macOS, & Linux) python script to help make the documentation process easier.☆26Updated last year
- Random notes collected on the intertubes relating to DFIR☆32Updated last year
- Repository of public reference frameworks for the DFIR community.☆110Updated last year
- Incident Response Methodologies (IRM), also called Incident Playbook, based on the work done by the CERT Societe General☆23Updated 3 years ago
- CSIRT Jump Bag☆27Updated 8 months ago
- Cybersecurity Incident Response Plan☆88Updated 4 years ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆67Updated 2 months ago
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆64Updated last year
- ☆34Updated 4 years ago