
Event-ID-263-Arbitrary-File-Read-on-Checkpoint-Security-Gateway-CVE-2024-24919-
Step-by-step SOC incident response walkthrough for CVE-2024-24919 arbitrary file read on Check Point gateways, covering detection, analysis,…

Step-by-step SOC incident response walkthrough for CVE-2024-24919 arbitrary file read on Check Point gateways, covering detection, analysis,…

Python Decoders for Common Remote Access Trojans

Clusters and elements to attach to MISP events or attributes (like threat actors)

Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.

React2Shell, CVE-2025-55182, RCE Vulnerability: A critical breakdown of the unsafe deserialization flaw in React Server Components that enables…

Python-based malware analysis sandbox that integrates with Sysinternals Procmon to automatically collect, analyze, and report runtime indicators with…

A tool for studying JavaScript malware.

66-tool MCP server for dark web intelligence — breach data, ransomware tracking, Tor .onion access, malware analysis, blockchain intel, exploit…

Suspicious DGA from PDNS and Sandbox.

Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation

Malware/IOC ingestion and processing engine

This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports

A continuously updated resource that catalogs confirmed data breaches from across the globe. Each entry includes the breach name, usually aligned…

Threat hunting command system for agentic IDEs

IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.

Detects malicious IPv4 addresses and domain names associated with a web application by comparing against local threat intelligence lists of known…

Real-time npm/PyPI supply-chain threat detection. Behavioral chain analysis, AST scanning, IOC feeds, and compound scoring engine.

This is a webshell fingerprinting scanner designed to identify implants on Cisco IOS XE WebUI's affected by CVE-2023-20198 and CVE-2023-20273