
Antiphishing
Advanced Phishing Protection: Suricata rulesets open and free

Advanced Phishing Protection: Suricata rulesets open and free

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Reverse engineering notes, deobfuscated source, IOCs, and YARA rules for the Tourmaline ClickFix Python RAT, covering its DNS tunnel and blockchain…

Centralized repository for malware samples, threat intelligence, IOCs, and security tooling logs to support threat research and incident response…

This is the home of the Expel Intel Team. Here, we will share IOCs and other information that is either not suitable for fitting into other mediums…

ioc2rpz is a place where threat intelligence meets DNS.

Curated vulnerability writeups with full technical analysis, proof-of-concept scripts, IOC listings, and remediation guidance for real-world software…

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation

Curated dataset of IPs, ASNs, and SMTP banners for Exim CVE-2019-10149, with linked advisories and threat actor intelligence for vulnerability…

Scanner de IOCs del ataque de cadena de suministro TeamPCP (CVE-2026-33634).

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

CLI client for abuse.ch

A Python-based security scanner for identifying the CVE-2025-31324 vulnerability in SAP Visual Composer systems, and detecting known Indicators of…

Indicators of Compromise from Amnesty International's cyber investigations

This is a webshell fingerprinting scanner designed to identify implants on Cisco IOS XE WebUI's affected by CVE-2023-20198 and CVE-2023-20273