
cyberbro
A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

Curated collection of indicators of compromise extracted from real-world malware investigations, including hashes, domains, and IPs for threat…

Operational information regarding CVE-2022-3602 and CVE-2022-3786, two vulnerabilities in OpenSSL 3

DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret Hunt,…

Scan files or process memory for CobaltStrike beacons and parse their configuration

Suspicious DGA from PDNS and Sandbox.

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

A curated collection of DFIR skills and workflows for InfoSec practitioners.

Curated JSON object templates that define MISP attributes and relationship types for structured threat intelligence sharing and interoperable IOC…

Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security related…

Curated repository of documented firmware supply chain attacks, featuring IoCs, detection tools, and references to help defenders understand and…

Collecting & Hunting for IOCs with gusto and style

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

Parses public sandbox detonation reports to produce threat hunting intelligence, organizes findings via MITRE ATT&CK, assembles IOCs, and generates…

This is the repository for indicators of compromise (IOCs) and other data for threat intelligence articles posted on the Palo Alto Networks Unit 42…

Curated public database of indicators of compromise aggregated by Wiz Research for threat detection, hunting, and incident response workflows.

This project is 'bridge' between the sleep and python language. It allows the control of a Cobalt Strike teamserver through python without the need…