Ecosyste.ms: Repos

An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: iocs

rodanmaharjan/ThreatIntelligence

Malicious IP source.

Language: Python - Size: 62.6 MB - Last synced: about 23 hours ago - Pushed: about 23 hours ago - Stars: 30 - Forks: 3

dfirsec/pie

Quick method to extract Indicators of Compromise (IOCs) from a Threat Intel Report in PDF format.

Language: Python - Size: 268 KB - Last synced: about 11 hours ago - Pushed: 1 day ago - Stars: 10 - Forks: 0

mthcht/ThreatHunting-Keywords

Awesome list of keywords and artifacts for Threat Hunting sessions

Language: HTML - Size: 105 MB - Last synced: about 5 hours ago - Pushed: 7 days ago - Stars: 347 - Forks: 39

fox-it/citrix-netscaler-triage

Dissect triage script for Citrix NetScaler devices

Language: Python - Size: 34.2 KB - Last synced: 3 days ago - Pushed: 3 days ago - Stars: 19 - Forks: 5

TheHive-Project/TheHive

TheHive: a Scalable, Open Source and Free Security Incident Response Platform

Language: Scala - Size: 41.2 MB - Last synced: 5 days ago - Pushed: over 1 year ago - Stars: 3,235 - Forks: 601

kg68k/puni

ぷにぐらま~ずまにゅある

Size: 405 KB - Last synced: 9 days ago - Pushed: 10 days ago - Stars: 11 - Forks: 1

kg68k/hiocs-plus

HIOCS PLUS is a modified version of HIOCS.X

Language: Assembly - Size: 524 KB - Last synced: 9 days ago - Pushed: 10 days ago - Stars: 4 - Forks: 0

cert-lv/exchange_webshell_detection 📦

Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065)

Language: PowerShell - Size: 15.6 KB - Last synced: 4 days ago - Pushed: about 3 years ago - Stars: 97 - Forks: 21

kitabisa/teler 📦

Real-time HTTP Intrusion Detection

Language: Go - Size: 655 KB - Last synced: 21 days ago - Pushed: 3 months ago - Stars: 2,969 - Forks: 247

censys-workshop/threatfox-censys

Threatfox Censys is a tool to query Censys Search for IP addresses and domains and then parses the JSON and submits the results to Threatfox.

Language: Python - Size: 227 KB - Last synced: 23 days ago - Pushed: 23 days ago - Stars: 19 - Forks: 2

KasperskyLab/threat-intelligence

A repository dedicated to deliver a comprehensive set of tools for integration and convenient use of Kaspersky Threat Intelligence services

Language: Python - Size: 65.4 KB - Last synced: 25 days ago - Pushed: 25 days ago - Stars: 7 - Forks: 0

TheHive-Project/Cortex

Cortex: a Powerful Observable Analysis and Active Response Engine

Language: Scala - Size: 4.58 MB - Last synced: 27 days ago - Pushed: 27 days ago - Stars: 1,249 - Forks: 214

pcdshub/whatrecord

EPICS IOC meta information tool

Language: Python - Size: 9.69 MB - Last synced: about 1 month ago - Pushed: 3 months ago - Stars: 7 - Forks: 6

jkerai1/DNSTwistToMDEIOC

Convert DNSTwist Results to MDE IOCs and TenantAllowBlockLists

Language: Python - Size: 103 KB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 1 - Forks: 0

Viralmaniar/DDWPasteRecon

DDWPasteRecon tool will help you identify code leak, sensitive files, plaintext passwords, password hashes. It also allow member of SOC & Blue Team to gain situational awareness of the organisation's web exposure on the pastesites. It Utilises Google's indexing of pastesites to gain targeted intelligence of the organisation. Blue & SOC teams can collect and analyse data from these indexed pastesites to better protect against unknown threats.

Language: C# - Size: 232 KB - Last synced: 16 days ago - Pushed: about 2 years ago - Stars: 37 - Forks: 11

go-outside-labs/sec-pentesting-toolkit 📦

👾 𝘁𝗼𝗼𝗹𝘀 𝗳𝗼𝗿 𝘀𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗿𝗲𝘀𝗲𝗮𝗿𝗰𝗵𝗲𝗿𝘀: 𝗽𝗲𝗻𝘁𝗲𝘀𝘁𝗶𝗻𝗴, 𝗖𝗧𝗙𝘀 & 𝘄𝗮𝗿𝗴𝗮𝗺𝗲𝘀

Language: C - Size: 251 MB - Last synced: about 1 month ago - Pushed: 2 months ago - Stars: 132 - Forks: 19

drb-ra/C2IntelFeeds

Automatically created C2 Feeds

Language: REXX - Size: 2.77 GB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 432 - Forks: 41

InQuest/omnibus

The OSINT Omnibus (beta release)

Language: Python - Size: 1.79 MB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 305 - Forks: 67

fhightower/ioc-finder

Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security related information) from text. It uses grammars rather than regexes which makes it more readable, maintainable, and hackable. Explore our interactive documentation here: https://hightower.space/ioc-finder/

Language: Python - Size: 1.35 MB - Last synced: 2 days ago - Pushed: 6 months ago - Stars: 151 - Forks: 38

fox-it/cobaltstrike-extraneous-space

Historical list of {Cobalt Strike,NanoHTTPD} servers

Size: 195 KB - Last synced: about 2 months ago - Pushed: about 5 years ago - Stars: 124 - Forks: 48

curated-intel/Ukraine-Cyber-Operations

Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional free threat intelligence. Slava Ukraini. Glory to Ukraine.

Language: YARA - Size: 4.44 MB - Last synced: about 2 months ago - Pushed: 11 months ago - Stars: 908 - Forks: 98

advanced-threat-research/Yara-Rules

Repository of YARA rules made by Trellix ATR Team

Language: YARA - Size: 378 KB - Last synced: 2 months ago - Pushed: 5 months ago - Stars: 526 - Forks: 80

lnls-sirius/epics-iocs

Central repository where similar applications are linked together

Language: Shell - Size: 33.2 KB - Last synced: 2 months ago - Pushed: almost 3 years ago - Stars: 0 - Forks: 1

Neo23x0/Loki2

LOKI2 - Simple IOC and YARA Scanner

Language: Rust - Size: 2.09 MB - Last synced: 3 months ago - Pushed: about 1 year ago - Stars: 67 - Forks: 8

threatlabz/iocs

This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports

Language: YARA - Size: 163 KB - Last synced: about 1 month ago - Pushed: 4 months ago - Stars: 59 - Forks: 11

TheHive-Project/TheHiveDocs 📦

Documentation of TheHive

Size: 29.8 MB - Last synced: 2 months ago - Pushed: 8 months ago - Stars: 389 - Forks: 287

blackberry/threat-research-and-intelligence

BlackBerry Threat Research & Intelligence

Language: Jupyter Notebook - Size: 20.3 MB - Last synced: about 1 month ago - Pushed: 7 months ago - Stars: 88 - Forks: 14

cyb3rmik3/Hunting-Lists

A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.

Size: 39.1 KB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 25 - Forks: 2

jkerai1/RansomWatchToMDEIoC

Parse Ransomwatch results in python and create MDE IOC lists as you search

Language: Python - Size: 25.4 KB - Last synced: 4 months ago - Pushed: 4 months ago - Stars: 0 - Forks: 0

dangonzaga/cybersecurity

A repository to reunite interesting content about cybersecurity (content in development)

Size: 2.93 KB - Last synced: 4 months ago - Pushed: 4 months ago - Stars: 0 - Forks: 0

aleprada/ioc_tweets

Script for gathering IoCs from Twitter and sending them to MISP.

Language: Python - Size: 4.88 KB - Last synced: 3 months ago - Pushed: almost 3 years ago - Stars: 7 - Forks: 2

MED-ELAZZAOUY/IOC-DI-Spring

This project demonstrates the concepts of Inversion of Control (IoC), Dependency Injection (DI), and low coupling using dynamic and static instantiation in a Spring-based Java application.

Language: Java - Size: 281 KB - Last synced: 6 months ago - Pushed: 6 months ago - Stars: 0 - Forks: 0

assafmo/xioc

Extract indicators of compromise from text, including "escaped" ones.

Language: Go - Size: 64.5 KB - Last synced: about 1 month ago - Pushed: about 4 years ago - Stars: 162 - Forks: 13

ioc-fang/ioc-fanger

Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .

Language: Python - Size: 764 KB - Last synced: 23 days ago - Pushed: 8 months ago - Stars: 52 - Forks: 11

MalwareSamples/Malware-Feed

Bringing you the best of the worst files on the Internet.

Language: Shell - Size: 556 MB - Last synced: 7 months ago - Pushed: about 3 years ago - Stars: 235 - Forks: 43

fox-it/cobaltstrike-beacon-data

Open Dataset of Cobalt Strike Beacon metadata (2018-2022)

Language: Jupyter Notebook - Size: 158 MB - Last synced: 7 months ago - Pushed: about 2 years ago - Stars: 113 - Forks: 25

NewBee119/Ti_Collector

本项目致力于收集网上公开来源的威胁情报,主要关注信誉类威胁情报(如IP/域名等),以及事件类威胁情报。

Language: Python - Size: 5.6 MB - Last synced: 7 months ago - Pushed: over 6 years ago - Stars: 304 - Forks: 99

iocium/feedback.dangerous.domains

Has your domain been listed on dangerous.domains? Simply file an issue to this repository and we'll take a look!

Size: 1000 Bytes - Last synced: 4 months ago - Pushed: 8 months ago - Stars: 0 - Forks: 0

cmatthewbrooks/pyiocutils

A collection of Python utilities for use in scripts related to working with "indicators of compromise" (IOCs).

Language: Python - Size: 9.77 KB - Last synced: 8 months ago - Pushed: over 5 years ago - Stars: 17 - Forks: 1

IronNetCybersecurity/IronNetTR

Threat research and reporting from IronNet's Threat Research Teams

Language: Jupyter Notebook - Size: 73.1 MB - Last synced: 10 months ago - Pushed: 10 months ago - Stars: 41 - Forks: 5

LeonardSEO/iOS-otx.alienvault

A carefully curated blocklist featuring Indicators of Compromise (IOCs) related to APPLE malware, exploits, and hacks. Utilize this list to safeguard your Apple devices and networks against potentially harmful domains. Ideal for integration with tools like Pi-hole.

Size: 29.3 KB - Last synced: 10 months ago - Pushed: 10 months ago - Stars: 1 - Forks: 0

fox-it/psixbot

PsiXBot Indicators of Compromise

Size: 26.4 KB - Last synced: 10 months ago - Pushed: about 5 years ago - Stars: 5 - Forks: 3

k3t4am4/k3t-ioc

(imho) Interesting IOCs, updated daily.

Size: 29.3 KB - Last synced: 10 months ago - Pushed: 10 months ago - Stars: 0 - Forks: 0

jakewarren/suricata-rule-generator

Quickly generate suricata rules for IOCs

Language: Go - Size: 224 KB - Last synced: 11 months ago - Pushed: about 3 years ago - Stars: 24 - Forks: 8

fox-it/operation-wocao

Operation Wocao - Indicators of Compromise

Language: YARA - Size: 5.86 KB - Last synced: 10 months ago - Pushed: over 4 years ago - Stars: 30 - Forks: 7

securechicken/pihole-checklogs

An helper script to check Pi-hole logs for given network IOCs (domains/FQDNs, or IPs)

Language: Shell - Size: 43.9 KB - Last synced: 12 months ago - Pushed: 12 months ago - Stars: 8 - Forks: 0

stratosphereips/ip_enrich

Enrich IP addresses with metadata and threat intelligence indicators.

Language: Python - Size: 140 KB - Last synced: 10 months ago - Pushed: 10 months ago - Stars: 15 - Forks: 4

martinkubecka/C2Detective

:mag: Application for detecting command and control (C2) communication through network traffic analysis.

Language: Python - Size: 694 KB - Last synced: about 1 year ago - Pushed: about 1 year ago - Stars: 2 - Forks: 0

TheHive-Project/DigitalShadows2TH

DigitalShadows Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform

Language: Python - Size: 170 KB - Last synced: about 1 year ago - Pushed: almost 5 years ago - Stars: 20 - Forks: 10

martinkubecka/kibanafu

:ramen: Parse IP IOCs and build a search query for Kibana with defined parameters.

Language: Python - Size: 34.2 KB - Last synced: about 1 year ago - Pushed: over 1 year ago - Stars: 0 - Forks: 0

shreesh1/OpenTI-Sources

Aggregating opensource Threat Intelligence sources per day

Language: Python - Size: 14.6 KB - Last synced: about 1 year ago - Pushed: about 2 years ago - Stars: 1 - Forks: 1

Psmths/analysis-notes

Collection of analysis notes and artifacts from my homelab, updated whenever I get time to detonate things

Size: 214 KB - Last synced: about 1 year ago - Pushed: over 3 years ago - Stars: 1 - Forks: 0

Cyberprotect/Cortex-Runner

Cortex jobs automation for TheHive

Language: Python - Size: 10.7 KB - Last synced: 16 days ago - Pushed: almost 6 years ago - Stars: 4 - Forks: 2

kg68k/x680x0-romid

X680x0 ROM 識別機

Size: 60.5 KB - Last synced: about 1 year ago - Pushed: almost 2 years ago - Stars: 1 - Forks: 0

codexlynx/iocs

Threat Intelligence & Indicators of Compromise repository.

Language: YARA - Size: 7.81 KB - Last synced: about 1 year ago - Pushed: about 2 years ago - Stars: 0 - Forks: 0

NavyTitanium/EITest-tools-scripts-IOCs

Language: PHP - Size: 8.54 MB - Last synced: 5 days ago - Pushed: about 6 years ago - Stars: 5 - Forks: 1

deeso/simple-pastebin-client

Language: Python - Size: 26.4 KB - Last synced: about 1 year ago - Pushed: about 6 years ago - Stars: 2 - Forks: 1

SteveClement/docker-cuckoo Fork of blacktop/docker-cuckoo

Cuckoo Sandbox Dockerfile

Language: Shell - Size: 2.14 MB - Last synced: about 1 year ago - Pushed: about 6 years ago - Stars: 0 - Forks: 1