
awesome-lists
Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.

Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Real-time phishing & scam domain blocklist - 205k+ curated threats, 1M+ community, free API, multiple formats

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…



Open-source Android client for VirusTotal. Scan files, URLs, and installed apps against 70+ antivirus engines. View detailed reports with hashes,…

Open Cyber Threat Intelligence Platform

A continuously updated resource that catalogs confirmed data breaches from across the globe. Each entry includes the breach name, usually aligned…

Trust & Safety tools for working together to fight digital harms.

Curated database of vulnerable and malicious Windows drivers with YARA, Sigma, ClamAV, and Sysmon detection rules for proactive threat hunting and…


A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

A curated knowledge base to build, run and mature a SOC (including CSIRT).

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Open-source security orchestration, automation, and response (SOAR) platform with a visual workflow editor, prebuilt security app integrations, and…

LetsDefend SOC lab investigating CVE-2024-49138 and related malicious activity.

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…