
badBANANA-threat-observatory
Threat intel observatory aggregating CISA KEV, ThreatFox, URLhaus, and MalwareBazaar feeds with search, change tracking, and STIX/CSV/JSONL export.

Threat intel observatory aggregating CISA KEV, ThreatFox, URLhaus, and MalwareBazaar feeds with search, change tracking, and STIX/CSV/JSONL export.

A centralized and enhanced memory analysis platform

EXIST is a web application for aggregating and analyzing cyber threat intelligence.

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

TAXII server implementation in Python from EclecticIQ

Incident Response Forensic Framework

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Detects malicious IPv4 addresses and domain names associated with a web application by comparing against local threat intelligence lists of known…

test for the ioc described for FG-IR-22-398

Defensive remediation and auditing toolkit for CVE-2026-54420 in LiteSpeed cPanel Plugin. Automates patching, detects suspicious symlinks, hunts…

Defensive mitigation and auditing toolkit for CVE-2026-54420 in LiteSpeed cPanel plugin, providing symlink detection, IOC hunting, and remediation…