
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.

Extracts MITRE ATT&CK techniques from threat reports in seconds, builds STIX 2.1 knowledge graphs with D3FEND defenses, and provides vector search,…

Deploy a TPOT honeypot for threat intelligence collection, real-time attack monitoring, and malicious IP aggregation with Elastic/Kibana log analysis.

Curated JSON object templates that define MISP attributes and relationship types for structured threat intelligence sharing and interoperable IOC…

A Linux Auditd rule set mapped to MITRE's Attack Framework

Pulled Pork for Snort and Suricata rule management (from Google code)