VX-Underground
msticpy is a library for InfoSec investigation and hunting in Jupyter Notebooks with extensive functionality for log data analysis, threat intelligence enrichment, and visualization.
Proactive threat management identifies, assesses, and neutralizes cyber risks for robust defense.
msticpy is a library for InfoSec investigation and hunting in Jupyter Notebooks with extensive functionality for log data analysis, threat intelligence enrichment, and visualization.
yarAnalyzer creates statistics on a yara rule set and files in a sample directory, generating tables and CSV files, including an inventory feature.
Open-source initiative providing malicious and benign datasets to expedite data analysis and threat research.
A library of Amazon S3 attack scenarios with mitigation strategies.
Get insights into the latest cybersecurity trends and expert advice on enhancing organizational security.
BotScout.com provides proactive bot detection, screening, and banning through a powerful API.
Create deceptive webpages to deceive and redirect attackers away from real websites by cloning them.
A library of event-based analytics written in EQL to detect adversary behaviors, now integrated into the Detection Engine of Kibana.
msticpy is a library for InfoSec investigation and hunting in Jupyter Notebooks with extensive functionality for log data analysis, threat intelligence enrichment, and visualization.
ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring.
CIFv3 is the next version of the Cyber Intelligence Framework, developed against Ubuntu16, encouraging users to transition from CIFv2.
IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol, with a focus on incident handling automation and threat intelligence processing.
RedEye is a visual analytic tool for enhancing Red and Blue Team operations.
Maldatabase is a threat intelligence platform providing malware datasets and threat intelligence feeds for malware data science and threat intelligence.
A modular malware collection and processing framework with support for various threat intelligence feeds.
A set of rules for detecting threats in various formats, including Snort, Yara, ClamAV, and HXIOC.
Maltiverse automates Threat Intelligence for small and medium-sized SecOps teams, providing an effective and affordable service.
Open-source initiative providing malicious and benign datasets to expedite data analysis and threat research.
A comprehensive list of IP addresses for cybersecurity purposes, including threat intelligence, incident response, and security research.
In-depth threat intelligence reports and services providing insights into real-world intrusions, malware analysis, and threat briefs.