awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to aptnotes/data

Open-source alternatives to Data

30 open-source projects similar to aptnotes/data, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Data alternative.

  • yara-rules/rulesYara-Rules avatar

    Yara-Rules/rules

    4,712View on GitHub↗

    This project is a community-curated repository of YARA rules used to detect malware, webshells, and other malicious patterns in files. It serves as a dataset of signatures for identifying known malware families, software packers, and threat intelligence indicators. The collection provides specialized detection capabilities for identifying exploit kits and anti-analysis evasion techniques, such as anti-debugging and anti-virtualization methods. It also includes signatures for cryptographic algorithm detection and the identification of unauthorized remote administration tools on servers. The r

    YARA
    View on GitHub↗4,712
  • fireeye/iocsfireeye avatar

    fireeye/iocs

    470View on GitHub↗

    FireEye Publicly Shared Indicators of Compromise (IOCs)

    View on GitHub↗470
  • pan-unit42/iocspan-unit42 avatar

    pan-unit42/iocs

    727View on GitHub↗

    This repository contains indicators related to Unit 42 Public Reports.

    PHP
    View on GitHub↗727
  • misp/mispMISP avatar

    MISP/MISP

    6,360View on GitHub↗

    MISP is an open-source threat intelligence sharing platform designed for collecting, storing, and distributing structured threat indicators and intelligence. At its core, it provides a distributed synchronization protocol for transferring events between instances, an attribute-based correlation engine that links matching indicators across events, and a REST API with an OpenAPI specification for programmatic access to threat data. The platform uses formal data formats for JSON, taxonomy, galaxy, and object templates to enable compatibility across tools and communities. The platform distinguish

    PHP
    View on GitHub↗6,360

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • inquest/threatingestorInQuest avatar

    InQuest/ThreatIngestor

    917View on GitHub↗

    Extract and aggregate threat intelligence.

    Python
    View on GitHub↗917
  • rpisec/malwareRPISEC avatar

    RPISEC/Malware

    4,028View on GitHub↗

    This project is a cybersecurity educational resource and courseware designed for malware analysis and reverse engineering. It provides a structured curriculum of lessons, labs, and guided projects focused on detecting and understanding the behavior of malicious software. The resource includes a lab guide for building isolated virtual machine environments to safely execute and study malware. It covers the setup of a specialized toolchain consisting of disassemblers and debuggers used to analyze compiled machine code. The training material covers both static analysis, which examines binary cod

    View on GitHub↗4,028
  • eset/malware-ioceset avatar

    eset/malware-ioc

    1,955View on GitHub↗

    Indicators of Compromises (IOC) of our various investigations

    YARA
    View on GitHub↗1,955
  • neo23x0/lokiNeo23x0 avatar

    Neo23x0/Loki

    3,763View on GitHub↗

    Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq

    Python
    View on GitHub↗3,763
  • advanced-threat-research/darkside-config-extractA

    advanced-threat-research/DarkSide-Config-Extract

    0View on GitHub↗
    View on GitHub↗0
  • blacksnufkin/litterboxBlackSnufkin avatar

    BlackSnufkin/LitterBox

    1,469View on GitHub↗

    A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end to end.

    YARAaidocker-composemalware-analysis
    View on GitHub↗1,469
  • adamtaguirov/ida-practical-cheatsheetA

    AdamTaguirov/IDA-practical-cheatsheet

    0View on GitHub↗
    View on GitHub↗0
  • botherder/targetedthreatsbotherder avatar

    botherder/targetedthreats

    190View on GitHub↗

    Collection of IOCs related to targeting of civil society.

    Python
    View on GitHub↗190
  • buffer/libemubuffer avatar

    buffer/libemu

    156View on GitHub↗

    x86 emulation and shellcode detection

    C
    View on GitHub↗156
  • buffer/pylibemubuffer avatar

    buffer/pylibemu

    129View on GitHub↗

    A Libemu Cython wrapper

    Python
    View on GitHub↗129
  • abusesa/abusehelperabusesa avatar

    abusesa/abusehelper

    125View on GitHub↗

    A framework for receiving and redistributing abuse feeds

    Python
    View on GitHub↗125
  • ashishb/android-malwareashishb avatar

    ashishb/android-malware

    1,209View on GitHub↗

    Collection of android malware samples

    Shell
    View on GitHub↗1,209
  • cert-polska/kartonC

    CERT-Polska/karton

    0View on GitHub↗
    View on GitHub↗0
  • alexandreborges/malwoverviewalexandreborges avatar

    alexandreborges/malwoverview

    3,882View on GitHub↗

    This project is a Python command-line security tool and malware analysis framework designed for threat intelligence aggregation and incident triage. It functions as an aggregator that orchestrates queries across multiple security services and sandboxes to analyze hashes, IP addresses, and domains. The tool distinguishes itself by incorporating an intelligence layer that uses language models to provide automated risk assessments and framework mappings. It also includes specialized capabilities for extracting indicators of compromise from unstructured text, documents, and web pages, as well as

    Pythonalienvaultcvecve-search
    View on GitHub↗3,882
  • activecm/ritaactivecm avatar

    activecm/rita

    579View on GitHub↗

    Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

    Go
    View on GitHub↗579
  • cert-polska/mwdb-coreC

    CERT-Polska/mwdb-core

    0View on GitHub↗
    View on GitHub↗0
  • certtools/intelmqcerttools avatar

    certtools/intelmq

    1,114View on GitHub↗

    IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

    Python
    View on GitHub↗1,114
  • certtools/intelmq-feeds-documentationcerttools avatar

    certtools/intelmq-feeds-documentation

    74View on GitHub↗

    Cyber Threat Intelligence Feeds

    View on GitHub↗74
  • checkpointsw/showstopperCheckPointSW avatar

    CheckPointSW/showstopper

    223View on GitHub↗

    Contributed by Check Point Software Technologies LTD. Programmed by Yaraslau Harakhavik

    C++
    View on GitHub↗223
  • citizenlab/malware-indicatorscitizenlab avatar

    citizenlab/malware-indicators

    280View on GitHub↗

    malware-indicators

    YARA
    View on GitHub↗280
  • cmu-sei/cyobstractC

    cmu-sei/cyobstract

    0View on GitHub↗
    View on GitHub↗0
  • corkami/picscorkami avatar

    corkami/pics

    11,464View on GitHub↗

    Pics is a comprehensive reference library providing visual documentation for binary file structures, character encodings, processor instruction sets, and hardware architecture maps. It serves as a centralized resource for the dissection and analysis of diverse binary formats, including executables, images, and archives. The project specializes in mapping complex specifications into visual layouts. This includes the creation of schematic diagrams to explain the physical and logical organization of hardware components and the maintenance of a catalog for processor opcodes across multiple hardwa

    Assembly
    View on GitHub↗11,464
  • countercept/snakeC

    countercept/snake

    0View on GitHub↗
    View on GitHub↗0
  • cred-club/artifC

    CRED-CLUB/ARTIF

    0View on GitHub↗
    View on GitHub↗0
  • criticalpathsecurity/zeek-intelligence-feedsC

    CriticalPathSecurity/Zeek-Intelligence-Feeds

    0View on GitHub↗
    View on GitHub↗0
  • cert-polska/drakvuf-sandboxCERT-Polska avatar

    CERT-Polska/drakvuf-sandbox

    1,305View on GitHub↗

    DRAKVUF Sandbox - automated hypervisor-level malware analysis system

    Pythonmalwaremalware-analysismalware-research
    View on GitHub↗1,305