IntelOwl: manage your Threat Intelligence at scale
-
Updated
May 16, 2024 - Python
IntelOwl: manage your Threat Intelligence at scale
Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest and it is able to scan Android devices against VT.
Actionable analytics designed to combat threats
A robust, and flexible open source User & Entity Behavior Analytics (UEBA) framework used for Security Analytics. Developed with luv by Data Scientists & Security Analysts from the Cyber Security Industry. [PRE-ALPHA]
This little tool is to calculate a MurmurHash value of a favicon to hunt phishing websites on the Shodan platform.
An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.
The FASTEST way to consume threat intel.
Sigma detection rules for hunting with the threathunting-keywords project
Library of threat hunts to get any user started!
Sniffing out well-known threat groups
Welcome to HackLab, your go-to resource for hands-on cybersecurity projects. This repository is a collection of step-by-step projects designed to enhance your understanding of various cybersecurity concepts, techniques, and tools.
Detect leaks in security event logs.
This is a simple Python script that connects to a MISP instance and retrieves attributes of specific types (such as IP addresses, URLs, and hashes). The retrieved attributes are then written to separate files.
🏴☠️ BST is an ever-evolving collection of 🛠 tools to help in security and administration day to day tasks 😉
Pull your DS rules and build a ATT&CK matrix
Extract logs based off events from sysmon. Comes as a package, cli and ui.
Uses the Damerau-Levenshtein distance to find suspicious tasks running on endpoints in Windows.
Add a description, image, and links to the threathunting topic page so that developers can more easily learn about it.
To associate your repository with the threathunting topic, visit your repo's landing page and select "manage topics."