
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational…

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

OSINT intelligence on any IP, domain, or ASN

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…

A high-performance TAXII (Trusted Automated eXchange of Indicator Information) server written in Rust.

A Python library for handling TAXII Messages invoking TAXII Services.

Self-hosted dark web OSINT platform. Automated threat intelligence from query to graph in 13 steps. Free alternative to Recorded Future, DarkOwl, and…

Automated security intelligence collector that queries public feeds and APIs for threat data on IPs, domains, URLs, hashes, and SSL fingerprints,…

Yet another Ransomware gang tracker

PhishCollector is a research framework for collecting, analysing, and tracking phishing sites.

Collect VEX documents and update VEX Hub