A list of books suggested by the security community to aid intelligence analysts learn to think
☆28Aug 7, 2023Updated 2 years ago
Alternatives and similar repositories for IntelAnalystBookClub
Users that are interested in IntelAnalystBookClub are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A public repository of MITRE ATT&ACK TTP mappings by BushidoUK for OSINT reports that lack a section breaking down the TTPs.☆27Mar 20, 2025Updated last year
- Can you pay the ransom in your country?☆14Dec 18, 2023Updated 2 years ago
- Creating a Feed of MISP Events from ThreatFox (by abuse.ch)☆19Jun 2, 2021Updated 4 years ago
- The Threat Actor Profile Guide for CTI Analysts☆117Jul 15, 2023Updated 2 years ago
- Mailpl0it is a small utility that hunts the homepage of exploit-db looking for user supplied quer(y/ies) and notifies the user via email …☆31Aug 5, 2022Updated 3 years ago
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆37Mar 15, 2023Updated 3 years ago
- Bunch of honey related items that spoof/decoy powersploit functions.☆18Apr 23, 2020Updated 5 years ago
- A simple DNS exfiltration script☆11Apr 17, 2023Updated 2 years ago
- Lightweight WhoIs client☆23Nov 21, 2025Updated 4 months ago
- A few STUXNET samples and live traffic captures from July 2010 while many stuxnet implants were still operational.☆29Sep 17, 2024Updated last year
- my goto docker image when playing ctfs with all the tools I need☆21Mar 8, 2026Updated 2 weeks ago
- Various snippets created during malware analysis☆22Apr 29, 2018Updated 7 years ago
- ☆20Jul 19, 2021Updated 4 years ago
- Using Microsoft 365 App Passwords for persistence☆23Sep 2, 2020Updated 5 years ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆130Apr 6, 2024Updated last year
- This python script performs a number of sqlite queries (mainly password metadata) against sqlite databases (Created by ROADtools) to prov…☆22Jul 3, 2024Updated last year
- IVRE's fork of the famous TCP port scanner. See below for details.☆39Jan 28, 2025Updated last year
- https://github.com/Swiftonsecurity/sysmon-config☆10Nov 8, 2018Updated 7 years ago
- Tools to assist with the configuration and management of fapolicyd.☆19Feb 1, 2026Updated last month
- simple C# portscanner - written for playing around with Metasploit's Execute-Assembly☆10Jul 1, 2023Updated 2 years ago
- Share threat intelligence and detect tools about APT "NightEgle" (APT-Q-95)☆41Jul 4, 2025Updated 8 months ago
- A small tool to unmap PE memory dumps.☆11Nov 9, 2023Updated 2 years ago
- ☆16Mar 13, 2024Updated 2 years ago
- 🔦 Uncovers a censored email's domain☆40Jun 15, 2023Updated 2 years ago
- Tatsu: A C++ library/CLI tool for requesting and saving shsh blobs from apple's tatsu signing server api.☆19Aug 16, 2023Updated 2 years ago
- ☆17Jan 9, 2025Updated last year
- A Statsd backend for sending metrics to Kafka☆18Apr 23, 2023Updated 2 years ago
- ☆16Feb 11, 2019Updated 7 years ago
- System Call Integrity Layer - experimental security research☆25Jan 31, 2026Updated last month
- Placeholder for IRIS-H Digital Forensics Tool☆15May 30, 2018Updated 7 years ago
- A not so awesome list of adversary emulation gems for aspiring red/blue/purple teamers☆16Jul 19, 2022Updated 3 years ago
- This repository contains procedures found in the Feb 2022 conti leaks. They were taken from the "manual_teams_c" rocketchat channel in th…☆87Mar 3, 2022Updated 4 years ago
- Cobaltstrike UDRL with memory evasion☆15May 16, 2024Updated last year
- repo with resources from Understanding Data with Alex Merced videos☆14Jan 20, 2024Updated 2 years ago
- #100DaysOfCloud #100DaysOfCyberSecurity snippets starting from 28 SEPT 2022☆15Oct 17, 2022Updated 3 years ago
- Search emails with Netlas.io☆20Aug 4, 2023Updated 2 years ago
- Privacy, security, ad blocking, and VPN tunneling, end to end, free, in your control, and made easy.☆19Sep 24, 2022Updated 3 years ago
- Remote access and Antivirus Logging Database☆45Apr 28, 2024Updated last year
- ☆13Dec 29, 2022Updated 3 years ago