
capa
Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational…


Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional…

Self-hosted dark web OSINT platform. Automated threat intelligence from query to graph in 13 steps. Free alternative to Recorded Future, DarkOwl, and…

Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.

TAXII server implementation in Python from EclecticIQ

gundog - guided hunting in Microsoft Defender

log4j / log4shell IoCs from multiple sources put together in one big file (IPs) more coming soon (CVE-2021-44228)

This is the home of the Expel Intel Team. Here, we will share IOCs and other information that is either not suitable for fitting into other mediums…

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

Open Vulnerability Intelligence platform, aggregated intel in one dashboard, with correlation and IOC lookups, completely self hosted. All resources…

A high-performance TAXII (Trusted Automated eXchange of Indicator Information) server written in Rust.

Collects vulnerability and advisory data from multiple public security feeds and stores it in a parsable, structured format for downstream security…

Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)

Forked from https://gitlab.alpinelinux.org/kaniini/secfixes-tracker


Real-time phishing & scam domain blocklist - 205k+ curated threats, 1M+ community, free API, multiple formats