
iocx
An extensible, deterministic static‑analysis engine that extracts high‑signal IOCs from PE binaries and text, built for SOC automation and modern…

An extensible, deterministic static‑analysis engine that extracts high‑signal IOCs from PE binaries and text, built for SOC automation and modern…

Aggregate, filter, and track CVEs from multiple sources with team collaboration, custom dashboards, alerts, and AI-powered analysis for vulnerability…

Indicators of Compromise from Amnesty International's cyber investigations

Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional…

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Sophos-originated indicators-of-compromise from published reports

A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.


Signatures and IoCs from public Volexity blog posts.

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

TAXII server implementation in Python from EclecticIQ

Suspicious DGA from PDNS and Sandbox.

Python library for extracting Indicators of Compromise, URLs, IP addresses, hashes, and email addresses from text using declarative grammars instead…

Extract indicators of compromise from text, including "escaped" ones.


Curated Indicators of Compromise and YARA rules from Zscaler ThreatLabz public reports for threat hunting, malware research, and detection…