
scambuster
Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

Open Cyber Threat Intelligence Platform

MISP (core software) - Open Source Threat Intelligence and Sharing Platform

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

Aggregate, filter, and track CVEs from multiple sources with team collaboration, custom dashboards, alerts, and AI-powered analysis for vulnerability…

Open-source security orchestration, automation, and response (SOAR) platform with a visual workflow editor, prebuilt security app integrations, and…



Open source platform for cyber security analysts with many features for threat intelligence and detection engineering.

A centralized and enhanced memory analysis platform

This repository contains indicators of compromise (IOCs) of our various investigations.

EXIST is a web application for aggregating and analyzing cyber threat intelligence.

Virtual Security Operations Center

KQL detection rules for Microsoft Sentinel and Defender XDR covering the bikini/exploitarium anonymous disclosure — a personal research archive of…

This Repository Talks about the Follina MSDT from Defender Perspective

Open-source collaborative note-taking platform for cybersecurity and CTI teams. IOC auto-extraction, STIX 2.1 export, real-time editing, RBAC,…

Extracts selected MISP attributes, including IP addresses, URLs, and hashes, into reusable output files.