
opencti
Open Cyber Threat Intelligence Platform

Open Cyber Threat Intelligence Platform

Malicious Extension Database

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.

Real-time phishing & scam domain blocklist - 205k+ curated threats, 1M+ community, free API, multiple formats

Debian Security Tracker

Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational…

Collection of Cyber Threat Intelligence sources from the deep and dark web

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

Advanced Phishing Protection: Suricata rulesets open and free

A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

Curated JSON object templates that define MISP attributes and relationship types for structured threat intelligence sharing and interoperable IOC…

📕NVD Database

Clusters and elements to attach to MISP events or attributes (like threat actors)

Analysis and Representation of Graphs of Suspicious Operations (Analyse et Représentation des Graphes des Opérations Suspectes)

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Python CLI tool for rapid IOC analysis (IPs, Domains, CVEs) using 6 free Threat Intel APIs. Outputs: Color-coded Excel, JSON, CSV. Uses: VT, Shodan,…

MISP (core software) - Open Source Threat Intelligence and Sharing Platform