
Threat-Intelligence-Hunter
TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs. The idea…

TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs. The idea…

A tool for studying JavaScript malware.

A DFIR tool to extract cryptocoin addresses and other indicators of compromise from binaries.

Tool to search for IOCs related to HAFNIUM: CVE-2021-26855 CVE-2021-26857 CVE-2021-26858 CVE-2021-27065

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

Defense Against the Shai-Hulud Supply Chain Attack

FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.

This is repository contains a script to check for current IOCs listed in the freepbx forum topic of the CVE-2025-57819

Static analysis of malicious Python code

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

CVE-2021-3441 CVE Check is a python script to search targets for indicators of compromise to CVE-2021-3441


Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

Parses public sandbox detonation reports to produce threat hunting intelligence, organizes findings via MITRE ATT&CK, assembles IOCs, and generates…

Clusters and elements to attach to MISP events or attributes (like threat actors)