
PatrowlHears
PatrowlHears - Vulnerability Intelligence Center / Exploits

PatrowlHears - Vulnerability Intelligence Center / Exploits

A Python library for handling TAXII Messages invoking TAXII Services.

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

Curated Indicators of Compromise and YARA rules from Zscaler ThreatLabz public reports for threat hunting, malware research, and detection…


Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups

gundog - guided hunting in Microsoft Defender

log4j / log4shell IoCs from multiple sources put together in one big file (IPs) more coming soon (CVE-2021-44228)

A repo to hold KQL queries as part of my 100 days of KQL effort.

Advanced Phishing Protection: Suricata rulesets open and free

PhishCollector is a research framework for collecting, analysing, and tracking phishing sites.

OSINT intelligence on any IP, domain, or ASN

A tool to assist with network-based hunting for GRU's Drovorub malware c2

Collect VEX documents and update VEX Hub

Dynamically generated Suricata rules from real-time threat feeds

A high-performance TAXII (Trusted Automated eXchange of Indicator Information) server written in Rust.