
ThreatIngestor
Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional…

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Passive hostname, domain and IP lookup tool for non-robots

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

A high-performance TAXII (Trusted Automated eXchange of Indicator Information) server written in Rust.

Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

CLI client for abuse.ch

Live Feed of C2 servers, tools, and botnets

PatrowlHears - Vulnerability Intelligence Center / Exploits

This is the home of the Expel Intel Team. Here, we will share IOCs and other information that is either not suitable for fitting into other mediums…

Curated dataset of confirmed phishing URLs from JPCERT/CC, including confirmation date, full URL, and spoofed brand for threat intelligence and…

A Python library for handling TAXII Messages invoking TAXII Services.

Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational…

Collection of Cyber Threat Intelligence sources from the deep and dark web

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.