Skip to content

Latest commit

 

History

7 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Wraithfeed

Wraithfeed is an autonomous threat intelligence pipeline that ingests CVE/KEV and malware feeds, scores and prioritizes findings, generates analyst-ready briefings, and pushes structured events to MISP. Built for lean security teams who need signal, not noise, from the threat landscape. 👻📡

Created: August 5, 2026

  • Initially a portfolio piece

  • You can also take a look at my SBOM scanning vulnerability tool called KEVScan which may have a minimal level of external functionality.

Features

  • Extracts IOCs from a test article: 20260805

References

Experiential Notes

  • I learned how to use pytest.
  • I learned more about Pythonisms like using _ as a throw-away variable and using type_ as a variable name to avoid confusion with the type keyword, but argued with Claude that indicator_type would be a better variable name. I'm ol' school.
  • On the Claude Pro Plan it really doesn't cost anything extra if you're only coding for a couple of hours a day. It's a nice change from my Hermes Agent project which runs solely on API credits from a number of model providers.

About

Wraithfeed — an autonomous threat intelligence pipeline that ingests CVE/KEV and malware feeds, scores and prioritizes findings, generates analyst-ready briefings, and pushes structured events to MISP. Built for lean security teams who need signal, not noise, from the threat landscape. 👻📡

Resources

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages