
deepdarkCTI
Collection of Cyber Threat Intelligence sources from the deep and dark web

Collection of Cyber Threat Intelligence sources from the deep and dark web

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

Defanged Indicator of Compromise (IOC) Extractor.

A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

A continuously updated collection of threat intelligence indicators of compromise (IOCs), including YARA rules, for detecting and tracking malware…


Searches For Threat Hunting and Security Analytics


Curated Indicators of Compromise and YARA rules from Zscaler ThreatLabz public reports for threat hunting, malware research, and detection…

gundog - guided hunting in Microsoft Defender

log4j / log4shell IoCs from multiple sources put together in one big file (IPs) more coming soon (CVE-2021-44228)

A tool to assist with network-based hunting for GRU's Drovorub malware c2

Public repository of Sigma and YARA rules created by Synacktiv

Collection of IoCs available and related to attacks on ESXi infrastructures that occurred as of Friday February 3, 2023.

IoCs and detection rules for the Notepad++ supply chain attack (CVE-2025-15556) — Lotus Blossom APT, June–December 2025. Includes Falcon LogScale…

A collection of IOCs for CVE-2021-44228 also known as Log4Shell

Static vulnerability findings tracker with parallel search across 11 CVE databases, EPSS enrichment, CISA KEV badges, coordinated disclosure…