

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Trust & Safety tools for working together to fight digital harms.

A Splunk app mapped to MITRE ATT&CK to guide your threat hunts

Yet another Ransomware gang tracker

Don't Just Search OSINT. Sweep It.

TAXII server implementation in Python from EclecticIQ

PatrowlHears - Vulnerability Intelligence Center / Exploits

A Python library for handling TAXII Messages invoking TAXII Services.

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

DShield Sensor Log Collection with ELK

log4j / log4shell IoCs from multiple sources put together in one big file (IPs) more coming soon (CVE-2021-44228)

A repo to hold KQL queries as part of my 100 days of KQL effort.

A tool to assist with network-based hunting for GRU's Drovorub malware c2

OSINT intelligence on any IP, domain, or ASN

Dynamically generated Suricata rules from real-time threat feeds

Free, offline SOC Analyst Hub for Tier 1 — IR checklists, alert triage playbooks, threat hunting queries & analyst onboarding. Single HTML file, no…

Real-time phishing & scam domain blocklist - 208k+ curated threats, 1M+ community, free API, multiple formats