
exist
EXIST is a web application for aggregating and analyzing cyber threat intelligence.

Live Feed of C2 servers, tools, and botnets

Graph platform for Detection and Response

Automated security intelligence collector that queries public feeds and APIs for threat data on IPs, domains, URLs, hashes, and SSL fingerprints,…

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Gets updates from various clearnet domains and ransomware threat actor domains

Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

This is the home of the Expel Intel Team. Here, we will share IOCs and other information that is either not suitable for fitting into other mediums…

Curated collection of public Indicators of Compromise (IoCs) for the Log4j vulnerability (CVE-2021-44228), aggregated from multiple sources for…

The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).

😱 A curated list of amazingly awesome OSINT


Open Cyber Threat Intelligence Platform


A resource containing all the tools each ransomware gangs uses