Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing
-
Updated
Mar 11, 2019 - Dockerfile
Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing
Provide Rust-based MISP data models with full attribute support and bidirectional STIX 2.1 conversion for threat intelligence workflows.
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
Pure Rust library for MISP data models and STIX 2.1 conversion
rootless Docker MISP Container
Advanced Sysmon configuration, Installer & Auto Updater with high-quality event tracing
A script to create every available object in ThreatConnect.
FortiLucene is a Web UI Program Interface that facilitates the FortiEDR Lucene Syntax Query Language
a cli swiss army knife for working with Trustar
A privacy-preserving platform designed for Cyber Threat Intelligence (CTI) sharing and validation. Based on its architecture, it utilizes STIX (Structured Threat Information Expression) mappings alongside zero-knowledge cryptographic circuits—specifically proof-of-observation and reputation-accumulator modules written in Rust...
An AWS Lambda function to export NIDS IOCs from a MISP instance
🚓 Search surveillance footage offline using AI. Analyze videos with natural language queries for enhanced privacy and security.
Docker-MISP provides an easy way for deploying MISP instances with simple Docker images.
Tools for working with FIRST IEP (Information Exchange Policy) objects
an awesome list of honeypot resources
DFIR IoC Unit Testing
A transparent, community-first repository of curated threat feeds in .txt and .json formats. Built from real-world firewall logs and IDS/IPS alerts from our network, these datasets help sysadmins defend their networks with actionable, ethically-sourced data. Each feed includes timestamps, offense counts, and traffic metadata etc
The goal of Engaged Threat is to provide honeypot researchers the ability to hold the attention of an attacker or to induce the attacker to participate in some sort of increased activity.
python implementation of the indicator-protocol
To associate your repository with the threat-sharing topic, visit your repo's landing page and select "manage topics."