Defund the Police.
-
Updated
Jun 7, 2024
Defund the Police.
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/
Your Everyday Threat Intelligence
Python library using the MISP Rest API
Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic Artifact Events for UEBA, Detect Exploitation events with wide CVE Coverage, and Risk Scoring of CVE, UEBA, Forensic, and MITRE ATT&CK Events.
Extract and aggregate threat intelligence.
TAXII server implementation in Python from EclecticIQ
Defanged Indicator of Compromise (IOC) Extractor.
A (nearly) production ready Dockered MISP
Documentation and Sharing Repository for ThreatPinch Lookup Chrome & Firefox Extension
CIF v3 -- the fastest way to consume threat intelligence
Personal compilation of APT malware from whitepaper releases, documents and own research
Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security related information) from text. It uses grammars rather than regexes which makes it more readable, maintainable, and hackable. Explore our interactive documentation here: https://hightower.space/ioc-finder/
Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing
Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing
A utility repo to assist with converting between MISP and STIX formats
The Project can be used to integrate QRadar with MISP Threat Sharing Platform
This repository contains Malicious Indicator of Compromise (IOC) blocklist for MISP, firewall which is vital for cybersecurity professionals to enhance threat detection and improve incident response capabilities.
the fastest way to consume threat intelligence.
To associate your repository with the threat-sharing topic, visit your repo's landing page and select "manage topics."