Home / Threat Defense / Threat Management

Threat Management

Proactive threat management identifies, assesses, and neutralizes cyber risks for robust defense.

Try these 256 AI Threat Management Tools

CyberAlerts
Free

CyberAlerts

ThreatMiner is a threat intelligence portal that aggregates data from various sources and provides contextual information related to indicators of compromise (IOCs).

CyberOwl
Free

CyberOwl

A curated collection of Sigma & Yara rules and Indicators of Compromise (IOCs) for threat detection and malware identification.

CyBot Open Source Threat Intelligence Chat Bot
Free

CyBot Open Source Threat Intelligence Chat Bot

A platform for accessing threat intelligence and collaborating on cyber threats.

DailyIOC
Free

DailyIOC

Python APIs for serializing and de-serializing STIX2 JSON content with higher-level APIs for common tasks.

DataPlane.org
Free

DataPlane.org

Collection of Yara rules for file identification and classification

Deception-as-Detection
Free

Deception-as-Detection

A Splunk app mapped to MITRE ATT&CK to guide threat hunts.

DeepBlueCLI
Free

DeepBlueCLI

A community-driven list of sample security analytics for auditing cloud usage and detecting threats in Google Cloud.

Detection Content Repository
Free

Detection Content Repository

A Python library for handling TAXII v1.x Messages and invoking TAXII Services.

Detection Rules
Free

Detection Rules

Python-based client for IBM XForce Exchange with an improved version available.

DNSDumpster
Free

DNSDumpster

Globally-accessible knowledge base of adversary tactics and techniques for cybersecurity.

Dorothy
Free

Dorothy

A tool designed to extract additional value from enterprise-wide AppCompat / AmCache data

Echotrail Insights
Free

Echotrail Insights

VirusTotal API v3 is a threat intelligence platform for scanning files, URLs, and IP addresses, and retrieving reports on threat reputation and context.

eCrimeLabs
Free

eCrimeLabs

Tool for dataviz and statistical analysis of threat intelligence feeds, presented in cybersecurity conferences for measuring IQ of threat intelligence feeds.

Elastic Security YARA Rules
Free

Elastic Security YARA Rules

Real-time, container-based file scanning system for threat hunting and incident response.

ElectricEye
Free

ElectricEye

A tool for tracking, scanning, and filtering yara files with distributed scanning capabilities.

EQL Analytics Library
Free

EQL Analytics Library

AbuseHelper is an open-source framework for receiving and redistributing abuse feeds and threat intel.

ExoneraTor
Free

ExoneraTor

Real-time, container-based file scanning system for threat hunting and incident response.

FileIntel
Free

FileIntel

VirusTotal API v3 is a threat intelligence platform for scanning files, URLs, and IP addresses, and retrieving reports on threat reputation and context.

FireEye Mandiant SunBurst Countermeasures
Free

FireEye Mandiant SunBurst Countermeasures

NECOMA focuses on data collection, threat analysis, and developing new cyberdefense mechanisms to protect infrastructure and endpoints.

FireEye IOCs
Free

FireEye IOCs

Maltrail is a malicious traffic detection system utilizing blacklists and heuristic mechanisms.

FireHOL IP Aggregator
Free

FireHOL IP Aggregator

BotScout.com provides proactive bot detection, screening, and banning through a powerful API.

FireEye Red Team Tool Countermeasures
Free

FireEye Red Team Tool Countermeasures

Powershell Threat Hunting Module for scanning remote endpoints and collecting comprehensive information.

Forager
Free

Forager

A repository of cybersecurity datasets and tools curated by @sooshie.

FraudGuard
Free

FraudGuard

A set of rules for detecting threats in various formats, including Snort, Yara, ClamAV, and HXIOC.