#1Tools for collecting, analyzing, and operationalizing threat feeds, indicators of compromise (IOCs), and attack trends.
Kitploit recommended

DPS' Lightweight Investigation Notebook

A powerful target reconnaissance framework powered by graph theory.

Easy-to-use live forensics toolbox for Linux endpoints

Digital Methods Initiative - Twitter Capture and Analysis Toolset

HonSSH is designed to log all SSH communications between a client and server.

A PowerShell script to interact with the MITRE ATT&CK Framework via its own API

Open Cloud Security Posture Management Engine

Ransomware leak site monitoring

ph0neutria is a malware zoo builder that sources samples straight from the wild. Everything is stored in Viper for ease of access and manageability.

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

Automatically create YARA rules from malicious documents.

LDAP Watchdog: A real-time linux-compatible LDAP monitoring tool for detecting directory changes, providing visibility into additions, modifications,…

Anteater - CI/CD Gate Check Framework

A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object

Pivotable Reverse WhoIs / PDNS Fusion with Registrant Tracking & Alerting plus API for automated queries (JSON/CSV/TXT)

a low(zero) cost threat intelligence&response tool against phishing domains