
TekDefense-Automater
Automater - IP URL and MD5 OSINT Analysis

Automater - IP URL and MD5 OSINT Analysis

Automated security intelligence collector that queries public feeds and APIs for threat data on IPs, domains, URLs, hashes, and SSL fingerprints,…

Gets updates from various clearnet domains and ransomware threat actor domains

Pulled Pork for Snort and Suricata rule management (from Google code)

This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports

A Python library for handling TAXII Messages invoking TAXII Services.

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…


Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups

gundog - guided hunting in Microsoft Defender

log4j / log4shell IoCs from multiple sources put together in one big file (IPs) more coming soon (CVE-2021-44228)

A repo to hold KQL queries as part of my 100 days of KQL effort.

Advanced Phishing Protection: Suricata rulesets open and free

PhishCollector is a research framework for collecting, analysing, and tracking phishing sites.

OSINT intelligence on any IP, domain, or ASN

A tool to assist with network-based hunting for GRU's Drovorub malware c2