
Unit42-timely-threat-intel
A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

A continuously updated collection of threat intelligence indicators of compromise (IOCs), including YARA rules, for detecting and tracking malware…

A collection of scripts for processing network forensics type data and intelligence, mainly into a postgres database.

A collection of IOCs for CVE-2021-44228 also known as Log4Shell

Collection of YARA signatures from individual research

A curated collection of DFIR skills and workflows for InfoSec practitioners.

Collection of IoCs available and related to attacks on ESXi infrastructures that occurred as of Friday February 3, 2023.





IoCs and detection rules for the Notepad++ supply chain attack (CVE-2025-15556) — Lotus Blossom APT, June–December 2025. Includes Falcon LogScale…

A centralized and enhanced memory analysis platform

Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking,…

IOC and YARA-based scanner for detecting indicators of compromise via file name regex, YARA signatures, hash matching, and C2 back-connect checks on…

Indicators of Compromise from Amnesty International's cyber investigations


Defanged Indicator of Compromise (IOC) Extractor.