
malicious_extension_sentry
Malicious Extension Database

Malicious Extension Database

Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.

Real-time phishing & scam domain blocklist - 205k+ curated threats, 1M+ community, free API, multiple formats



Advanced Phishing Protection: Suricata rulesets open and free

Clusters and elements to attach to MISP events or attributes (like threat actors)

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Curated collection of cybersecurity resources, labs, and training materials covering ethical hacking, penetration testing, exploit development,…

Curated JSON object templates that define MISP attributes and relationship types for structured threat intelligence sharing and interoperable IOC…

Curated IPv4 blocklist of malicious addresses, refreshed every 6 hours for firewall and WAF ingestion, with split lists and CTI-ready formats for…

66-tool MCP server for dark web intelligence — breach data, ransomware tracking, Tor .onion access, malware analysis, blockchain intel, exploit…

Signatures and IoCs from public Volexity blog posts.

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such…

Threat intel observatory aggregating CISA KEV, ThreatFox, URLhaus, and MalwareBazaar feeds with search, change tracking, and STIX/CSV/JSONL export.

MISP (core software) - Open Source Threat Intelligence and Sharing Platform