awesome-repositories.com
ब्लॉग
MCP
awesome-repositories.com

AI-संचालित खोज के साथ बेहतरीन ओपन-सोर्स रिपॉजिटरी खोजें।

एक्सप्लोर करेंक्यूरेटेड खोजेंओपन-सोर्स विकल्पसेल्फ-होस्टेड सॉफ्टवेयरब्लॉगसाइटमैप
प्रोजेक्टहमारे बारे मेंहम रैंकिंग कैसे करते हैंप्रेसMCP सर्वर
कानूनीगोपनीयताशर्तें
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
intelowlproject avatar

intelowlproject/IntelOwl

0
View on GitHub↗
4,605 स्टार्स·647 फोर्क्स·Python·AGPL-3.0·8 व्यूज़intelowlproject.github.io↗

IntelOwl

IntelOwl एक थ्रेट इंटेलिजेंस प्लेटफ़ॉर्म और सुरक्षा ऑर्केस्ट्रेशन इंजन है जिसे सुरक्षा अवलोकनों (observables) को एकत्रित, विश्लेषण और समृद्ध करने के लिए डिज़ाइन किया गया है। यह एक सुरक्षा घटना जांच टूल और थ्रेट इंटेलिजेंस एग्रीगेटर के रूप में कार्य करता है, जो विभिन्न आंतरिक और बाहरी स्रोतों से फ़ाइलों, डोमेन और IP पतों पर डेटा एकत्र करता है। सिस्टम प्लेबुक-आधारित वर्कफ़्लो ऑटोमेशन के माध्यम से अलग दिखता है, जो यूज़र्स को विश्लेषण कार्यों के पुन: प्रयोज्य अनुक्रमों को परिभाषित करने की अनुमति देता है जो पिछले आउटपुट के आधार पर बाद के कार्यों को ट्रिगर करते हैं। यह अलग-अलग सुरक्षा डेटा को एक सामान्य स्कीमा में एकीकृत करता है और डेटा संवेदनशीलता के आधार पर एनालाइजर्स के निष्पादन को प्रतिबंधित करने के लिए प्रोटोकॉल-स्तर के एक्सेस कंट्रोल का उपयोग करता है। प्लेटफ़ॉर्म में इवेंट-ड्रिवन इंडिकेटर इंजेक्शन, ऑटोमेटेड सुरक्षा संचालन केंद्र वर्कफ़्लो और इंटेलिजेंस संवर्धन सहित व्यापक क्षमताएं हैं। यह जांच संगठन और डैशबोर्ड के माध्यम से विश्लेषण परिणामों के विज़ुअलाइज़ेशन के लिए टूल प्रदान करता है। प्रोजेक्ट Python में इम्प्लीमेंट किया गया है।

Features

  • Analysis Playbooks - Defines reusable sequences of analysis tasks that trigger subsequent jobs based on the output of previous steps.
  • Security Operations Automation - Implements a workflow engine that executes repeatable playbooks to automate manual security operations center tasks.
  • External Intelligence Integrators - Coordinates requests across a variety of internal tools and external APIs to enrich security observables.
  • Analysis Workflow Chaining - Triggers subsequent analysis jobs based on the results of previous tasks to automate complex investigation paths.
  • Security Automation Workflows - Executes repeatable playbooks and integrates libraries to replace manual security analyst tasks with automated processes.
  • Security Workflow Automators - Replaces manual security analyst tasks with repeatable playbooks and automated workflows to process threat observables.
  • Intelligence Enrichment - Aggregates data for malware and observables from multiple external and internal sources to increase context.
  • Incident Investigation Tools - Provides a workspace for grouping related analysis jobs and notes to identify security threats and correlate data.
  • Investigation Case Management - Groups related analysis jobs and notes into a single entity to track findings and correlate information.
  • Observable Analyzers - Extracts intelligence from files, IPs, and domains using static analysis and external API integrations.
  • Threat Intelligence Aggregation - Aggregates data on malware, IPs, and domains from multiple external analyzers via a single request to unify security research.
  • Threat Observable Analysis - Extracts intelligence from files and network indicators using static analysis tools and external API integrations.
  • Threat Intelligence Management - Organizes security investigations and tracks analyzed artifacts to correlate findings across diverse threat reports.
  • Threat Intelligence Platforms - Functions as a centralized system for aggregating, analyzing, and enriching security observables from internal and external sources.
  • Analysis Tool Grouping - Saves combinations of analyzers and connectors as reusable playbooks to standardize recurring investigation tasks.
  • Technical Indicator Tracking - Maintains unique entities for observables to link multiple analysis jobs and metadata to a single artifact.
  • Investigation Dashboards - Renders threat data through dashboards and visualizers to correlate findings and track investigation progress.
  • Indicator Feed Ingestion - Automatically triggers analysis playbooks when new observables are imported from external threat streams.
  • Stream Ingestion - Imports streams of observables or files automatically for immediate processing and analysis.
  • Observable Artifact Tracking - Maintains unique objects for observables to link multiple analysis jobs to a single file or indicator.
  • Data Privacy Controls - Controls the execution of analyzers and connectors based on protocol levels to prevent sensitive data leakage.
  • Analyzer Access Controls - Restricts the execution of specific analyzers and connectors based on data sensitivity levels to prevent information leakage.
  • Reliability Scoring - Combines analyzer data models with user reports to produce reliability and evaluation scores for observables.
  • Schema-Based Aggregation - Unifies diverse security data from multiple external analyzers into a common data model for consistent evaluation.
  • Threat Intelligence - Scalable management of threat intelligence data.
  • Detection and Hunting Tools - OSINT solution for gathering threat intelligence at scale.
  • Open Source Intelligence - Analyzes files and domains using multiple intelligence sources.
  • Threat Intelligence - Automated OSINT analysis for files, IPs, and domains.

स्टार हिस्ट्री

intelowlproject/intelowl के लिए स्टार हिस्ट्री चार्टintelowlproject/intelowl के लिए स्टार हिस्ट्री चार्ट

AI सर्च

और अधिक बेहतरीन रिपॉजिटरी खोजें

अपनी ज़रूरत को सरल भाषा में बताएं — AI हजारों क्यूरेटेड ओपन-सोर्स प्रोजेक्ट्स को प्रासंगिकता के आधार पर रैंक करता है।

Start searching with AI

IntelOwl के ओपन-सोर्स विकल्प

समान ओपन-सोर्स प्रोजेक्ट्स, जो IntelOwl के साथ साझा की गई सुविधाओं के आधार पर रैंक किए गए हैं।
  • thehive-project/thehiveTheHive-Project का अवतार

    TheHive-Project/TheHive

    3,891GitHub पर देखें↗

    TheHive is a security incident response platform and multi-tenant case management system. It functions as a Security Orchestration, Automation, and Response (SOAR) tool and a threat intelligence platform designed to coordinate security investigations by managing alerts, cases, and observables. The platform is distinguished by its multi-tenant architecture, which isolates data across different organizations while supporting selective cross-tenant sharing. It features a SOAR automation engine capable of executing sandboxed JavaScript logic to automate workflows and trigger response actions thro

    Scalaanalyzerapicortex
    GitHub पर देखें↗3,891
  • smicallef/spiderfootsmicallef का अवतार

    smicallef/spiderfoot

    18,189GitHub पर देखें↗

    SpiderFoot is an open-source reconnaissance and intelligence automation framework designed to streamline the collection and correlation of data for security investigations. It functions as a comprehensive platform that automates the querying of hundreds of public data sources to map digital footprints, identify exposed assets, and uncover potential security threats across an organization's external perimeter. The platform distinguishes itself through a modular, plugin-based architecture that executes data gathering tasks in parallel, supported by a directed graph data model that tracks relati

    Pythonattacksurfacecticybersecurity
    GitHub पर देखें↗18,189
  • security-onion-solutions/securityonionSecurity-Onion-Solutions का अवतार

    Security-Onion-Solutions/securityonion

    4,661GitHub पर देखें↗

    Security Onion is a security information and event management platform and network security monitoring suite. It functions as an intrusion detection system and a network traffic analysis tool designed to identify malicious activity and network intrusions through signature-based detection and host-based monitoring. The platform integrates a security case management system to organize investigations by tracking detections and grouping related security events. It provides capabilities for full packet capture, network metadata extraction, and the collection and indexing of security logs from dive

    Shell
    GitHub पर देखें↗4,661
  • jasonxtn/argusjasonxtn का अवतार

    jasonxtn/Argus

    3,254GitHub पर देखें↗

    Argus is a modular network reconnaissance framework designed for gathering network intelligence, mapping infrastructure, and assessing security postures through automated discovery tasks. It operates as a containerized security toolset that allows for the consistent execution of specialized information-gathering modules across different operating systems. The system functions as an infrastructure audit tool and a web application security scanner, performing tasks such as DNS lookups, port scanning, and the inspection of HTTP headers to detect vulnerabilities. It also serves as a threat intell

    Pythoncms-detectiondirectory-finderdns-lookup
    GitHub पर देखें↗3,254
IntelOwl के सभी 30 विकल्प देखें→

अक्सर पूछे जाने वाले प्रश्न

intelowlproject/intelowl क्या करता है?

IntelOwl एक थ्रेट इंटेलिजेंस प्लेटफ़ॉर्म और सुरक्षा ऑर्केस्ट्रेशन इंजन है जिसे सुरक्षा अवलोकनों (observables) को एकत्रित, विश्लेषण और समृद्ध करने के लिए डिज़ाइन किया गया है। यह एक सुरक्षा घटना जांच टूल और थ्रेट इंटेलिजेंस एग्रीगेटर के रूप में कार्य करता है, जो विभिन्न आंतरिक और बाहरी स्रोतों से फ़ाइलों, डोमेन और IP पतों पर डेटा एकत्र करता है। सिस्टम प्लेबुक-आधारित वर्कफ़्लो ऑटोमेशन के माध्यम से अलग दिखता है, जो यूज़र्स को विश्लेषण कार्यों के पुन: प्रयोज्य अनुक्रमों को…

intelowlproject/intelowl की मुख्य विशेषताएं क्या हैं?

intelowlproject/intelowl की मुख्य विशेषताएं हैं: Analysis Playbooks, Security Operations Automation, External Intelligence Integrators, Analysis Workflow Chaining, Security Automation Workflows, Security Workflow Automators, Intelligence Enrichment, Incident Investigation Tools।

intelowlproject/intelowl के कुछ ओपन-सोर्स विकल्प क्या हैं?

intelowlproject/intelowl के ओपन-सोर्स विकल्पों में शामिल हैं: thehive-project/thehive — TheHive is a security incident response platform and multi-tenant case management system. It functions as a Security… smicallef/spiderfoot — SpiderFoot is an open-source reconnaissance and intelligence automation framework designed to streamline the… security-onion-solutions/securityonion — Security Onion is a security information and event management platform and network security monitoring suite. It… jasonxtn/argus — Argus is a modular network reconnaissance framework designed for gathering network intelligence, mapping… reconurge/flowsint — Flowsint is an open-source intelligence framework and reconnaissance orchestrator used for cybersecurity… alexandreborges/malwoverview — This project is a Python command-line security tool and malware analysis framework designed for threat intelligence…