
scambuster
Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

Indicators of Compromise from Amnesty International's cyber investigations

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Live Feed of C2 servers, tools, and botnets

Defanged Indicator of Compromise (IOC) Extractor.

The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).

DPS' Lightweight Investigation Notebook


An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

Collecting & Hunting for IOCs with gusto and style

Suspicious DGA from PDNS and Sandbox.

Extract indicators of compromise from text, including "escaped" ones.

TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs. The idea…

Malware/IOC ingestion and processing engine

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation

Centralized repository for malware samples, threat intelligence, IOCs, and security tooling logs to support threat research and incident response…