
CVE-2020-6287_RECON-scanner
Black-box vulnerability scanner and indicator-of-compromise analyzer for CVE-2020-6287 (RECON) in SAP NetWeaver Java applications, enabling rapid…

Black-box vulnerability scanner and indicator-of-compromise analyzer for CVE-2020-6287 (RECON) in SAP NetWeaver Java applications, enabling rapid…

CVE-2021-3441 CVE Check is a python script to search targets for indicators of compromise to CVE-2021-3441

This is repository contains a script to check for current IOCs listed in the freepbx forum topic of the CVE-2025-57819

ThePhish: an automated phishing email analysis tool

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia,…

Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.

A tool for studying JavaScript malware.

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs. The idea…

A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV.…

A DFIR tool to extract cryptocoin addresses and other indicators of compromise from binaries.

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool

Detects CVE-2026-45321 (TanStack supply chain compromise) and Mini Shai-Hulud worm artifacts. Scans node_modules, lockfiles, persistence hooks…