How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
MISP is an open-source threat intelligence sharing platform designed for collecting, storing, and distributing structured threat indicators and intelligence. At its core, it provides a distributed synchronization protocol for transferring events between instances, an attribute-based correlation engine that links matching indicators across events, and a REST API with an OpenAPI specification for programmatic access to threat data. The platform uses formal data formats for JSON, taxonomy, galaxy, and object templates to enable compatibility across tools and communities. The platform distinguish
IntelOwl is a threat intelligence platform and security orchestration engine designed to aggregate, analyze, and enrich security observables. It functions as a security incident investigation tool and a threat intelligence aggregator, collecting data on files, domains, and IP addresses from diverse internal and external sources. The system differentiates itself through playbook-based workflow automation, allowing users to define reusable sequences of analysis tasks that trigger subsequent jobs based on prior outputs. It unifies disparate security data into a common schema and utilizes protoco
Tool to gather Threat Intelligence indicators from publicly available sources
Automatically created C2 Feeds | Also posted via @drb_ra
The main features of drb-ra/c2intelfeeds are: Threat Intelligence.
Open-source alternatives to drb-ra/c2intelfeeds include: misp/misp — MISP is an open-source threat intelligence sharing platform designed for collecting, storing, and distributing… intelowlproject/intelowl — IntelOwl is a threat intelligence platform and security orchestration engine designed to aggregate, analyze, and… inquest/threatingestor — Extract and aggregate threat intelligence. mlsecproject/combine — Tool to gather Threat Intelligence indicators from publicly available sources. dtag-dev-sec/tpotce — T-Pot is a multi-honeypot orchestration platform and threat intelligence collector. It utilizes a Docker-based… alexandreborges/malwoverview — This project is a Python command-line security tool and malware analysis framework designed for threat intelligence…