
Unit42-timely-threat-intel
A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

Automated ransomware and leak-site OSINT tracker scraping dark-web markets, monitoring victim posts, enriching actor/crypto data, and sending…

Passive hostname, domain and IP lookup tool for non-robots

Signatures and IoCs from public Volexity blog posts.

A Linux Auditd rule set mapped to MITRE's Attack Framework

Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional…

A continuously updated collection of threat intelligence indicators of compromise (IOCs), including YARA rules, for detecting and tracking malware…

A Splunk app mapped to MITRE ATT&CK to guide your threat hunts


Pulled Pork for Snort and Suricata rule management (from Google code)

A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework

Curated dataset of confirmed phishing URLs from JPCERT/CC, including confirmation date, full URL, and spoofed brand for threat intelligence and…


TAXII server implementation in Python from EclecticIQ

PatrowlHears - Vulnerability Intelligence Center / Exploits


A Python library for handling TAXII Messages invoking TAXII Services.

DShield Sensor Log Collection with ELK