IOCParser extracts Indicators of Compromise from reports, feeds, URLs, stdin, and directory trees. It supports refanging, MISP warning-list enrichment, structured renderers, persisted run history, IOC search, run diffs, and queue-backed distributed processing.
☆19Jun 22, 2026Updated 2 months ago
Alternatives and similar repositories for IOCParser
Users that are interested in IOCParser are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Helper scripts to automate the extraction of YARA rules from XProtectRemediators☆22Mar 5, 2024Updated 2 years ago
- Yara rules written by me, for free use.☆20Nov 26, 2021Updated 4 years ago
- Similarius is a Python library to compare web page and evaluate the level of similarity.☆24Mar 2, 2026Updated 6 months ago
- Cmdlets for capturing Windows Events☆14Mar 11, 2022Updated 4 years ago
- PowerShell tool to deploy deceptive Active Directory objects, and audit them☆16Jan 7, 2026Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- App to perform batch deletion of computer records in Jamf Protect☆21Jun 15, 2023Updated 3 years ago
- A Rust library along with a Win32 GUI application to determine the driver load order of a Windows system (cf. https://colinfinck.de/posts…☆13Jan 26, 2025Updated last year
- Active Directory forensic framework☆16May 18, 2026Updated 4 months ago
- A Model Context Protocol (MCP) server that integrates Volatility 3 memory forensics framework with Claude☆40Jul 7, 2025Updated last year
- Linking against PrivateFrameworks on macOS.☆23Oct 28, 2021Updated 4 years ago
- Web-based IOC management platform with threat intelligence enrichment for SOC teams☆22Jun 20, 2026Updated 3 months ago
- Command-line tool to identify useragents that bypasses proxy restrictions☆13Oct 23, 2025Updated 10 months ago
- DriverSentinel is a security tool developed in Go that detects malicious and vulnerable drivers on Windows systems by comparing them agai…☆36Jul 28, 2026Updated last month
- A local-first web interface for managing Tart VMs on Apple Silicon macOS.☆20Mar 15, 2026Updated 6 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A collection of CQL hunting leads for CrowdStrike Falcon and LogScale, mapped to the MITRE ATT&CK framework.☆35Sep 8, 2026Updated last week
- Versatile tool for managing wordlists☆11Jul 15, 2021Updated 5 years ago
- Havoc Professional backend plugin to allow ingesting of events and logs to Ghostwriter☆16Feb 25, 2026Updated 6 months ago
- My personal .files☆17Updated this week
- Brew Local Privilege Escalation exploit on Intel macOS☆19Mar 6, 2024Updated 2 years ago
- ☆13Mar 18, 2023Updated 3 years ago
- ☆11Jun 15, 2022Updated 4 years ago
- GDT (Ghidra Data Type) generated from IDA tils☆22Mar 10, 2023Updated 3 years ago
- ☆17Apr 21, 2026Updated 4 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Remove Offensive and Profane Words from Wordlists☆16Jul 27, 2023Updated 3 years ago
- Havoc 3rd party agent. Designed to be evasive. Fully PIC shellcode agent.☆17Dec 29, 2022Updated 3 years ago
- Threat Simulator for Enterprise Networks☆15May 14, 2022Updated 4 years ago
- ☆16Mar 22, 2023Updated 3 years ago
- JS modules for Frida based tools to add code coverage to your instrumentation scripts.☆26Jan 16, 2019Updated 7 years ago
- This JavaScript CLI "undeletes' packages that have been removed from the NPM registry☆34Sep 2, 2026Updated 2 weeks ago
- Generate YARA rules from Windows API hashes for malware detection and hunting.☆17Aug 11, 2026Updated last month
- Defanged malware stages from the telnyx 4.87.1/4.87.2 PyPI supply chain compromise — WAV steganography, credential stealer, Windows persi…☆21Mar 29, 2026Updated 5 months ago
- A PowerShell-based script to analyze network logs from CSV files and detect potential beaconing behavior. Supports VirusTotal integration…☆17May 11, 2025Updated last year
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- C# API for Nidhogg rootkit☆21Apr 25, 2024Updated 2 years ago
- Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs☆22Aug 7, 2025Updated last year
- ACTIVELabs Security Advisories☆24May 19, 2021Updated 5 years ago
- A really good cybersec reading materials.☆13Aug 13, 2022Updated 4 years ago
- A Go library for accessing the CeX trade store products API☆12Jan 8, 2023Updated 3 years ago
- Brainfuck architecture module and loader for Binary Ninja☆20Mar 16, 2026Updated 6 months ago
- Async PICO Hub is a work-in-progress framework to extend Cobalt Strike with custom event monitoring and in-process Asynchronous BOFs☆27Jun 4, 2026Updated 3 months ago