
ThreatExchange
Trust & Safety tools for working together to fight digital harms.

Trust & Safety tools for working together to fight digital harms.

Open Vulnerability Intelligence platform, aggregated intel in one dashboard, with correlation and IOC lookups, completely self hosted. All resources…

Gets updates from various clearnet domains and ransomware threat actor domains

A lightweight Python module to interact with the [MITRE ATT&CK®](https://attack.mitre.org/) Enterprise dataset. Built for speed with minimal…

A Python library for handling TAXII Messages invoking TAXII Services.

TAXII server implementation in Python from EclecticIQ

Reproducible SOC lab for CVE-2024-4577 detection and response

Automater - IP URL and MD5 OSINT Analysis

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational…

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

Dynamically generated Suricata rules from real-time threat feeds

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Malicious Extension Database

High-speed Windows forensic triage platform that orchestrates the Hayabusa engine to transform raw EVTX logs into prioritized threat timelines with…

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…