
TekDefense-Automater
Automater - IP URL and MD5 OSINT Analysis

Automater - IP URL and MD5 OSINT Analysis

A tool to assist with network-based hunting for GRU's Drovorub malware c2

A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework

IoCs and detection rules for the Notepad++ supply chain attack (CVE-2025-15556) — Lotus Blossom APT, June–December 2025. Includes Falcon LogScale…

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional…

A lightweight Python module to interact with the [MITRE ATT&CK®](https://attack.mitre.org/) Enterprise dataset. Built for speed with minimal…

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.

PatrowlHears - Vulnerability Intelligence Center / Exploits

STIX 2.1 collections of the MITRE ATT&CK knowledge base, providing adversary tactics and techniques for enterprise, mobile, and ICS threat…

This is the home of the Expel Intel Team. Here, we will share IOCs and other information that is either not suitable for fitting into other mediums…

DugganUSA threat-intelligence contributions to the IETF Hackathon — real-world agentic-attack benchmark vectors, CVE-2026-33697 attestation analysis,…

CVE-2026-85706 — GitLab Path Traversal IOC Scanner & Detection Toolkit. Detect and hunt for exploitation of the critical unauthenticated GitLab CE/EE…

Collection of Cyber Threat Intelligence sources from the deep and dark web