
Zeek-Intelligence-Feeds
Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…


Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

YARA signature and IOC database for my scanners and tools

Dynamically generated Suricata rules from real-time threat feeds

Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational…

Collection of Cyber Threat Intelligence sources from the deep and dark web

Open Cyber Threat Intelligence Platform

MISP (core software) - Open Source Threat Intelligence and Sharing Platform

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…


Real-time phishing & scam domain blocklist - 208k+ curated threats, 1M+ community, free API, multiple formats

A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence.

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

A query aggregator for OSINT based threat hunting

Automated ransomware and leak-site OSINT tracker scraping dark-web markets, monitoring victim posts, enriching actor/crypto data, and sending…

Passive hostname, domain and IP lookup tool for non-robots