awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to fastfire/deepdarkcti

Open-source alternatives to DeepdarkCTI

30 open-source projects similar to fastfire/deepdarkcti, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best DeepdarkCTI alternative.

  • hslatman/awesome-threat-intelligencehslatman avatar

    hslatman/awesome-threat-intelligence

    9,807View on GitHub↗
    awesomeawesome-listhacktoberfest
    View on GitHub↗9,807
  • andreyglauzer/vigilantonionandreyglauzer avatar

    andreyglauzer/VigilantOnion

    176View on GitHub↗

    Crawler on tor network sites, searching for keywords.

    Python
    View on GitHub↗176
  • aptnotes/dataaptnotes avatar

    aptnotes/data

    1,794View on GitHub↗

    APTnotes data

    View on GitHub↗1,794
  • certtools/intelmqcerttools avatar

    certtools/intelmq

    1,114View on GitHub↗

    IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

    Python
    View on GitHub↗1,114
  • certtools/intelmq-feeds-documentationcerttools avatar

    certtools/intelmq-feeds-documentation

    74View on GitHub↗

    Cyber Threat Intelligence Feeds

    View on GitHub↗74
  • csirtgadgets/massive-octo-spicecsirtgadgets avatar

    csirtgadgets/massive-octo-spice

    230View on GitHub↗

    DEPRECATED - USE v3 (bearded-avenger)

    Perl
    View on GitHub↗230

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • danieleperera/onioningestordanieleperera avatar

    danieleperera/OnionIngestor

    358View on GitHub↗

    An extendable tool to Collect, Crawl and Monitor onion sites on tor network and index collected information on Elasticsearch

    Python
    View on GitHub↗358
  • drb-ra/c2intelfeedsdrb-ra avatar

    drb-ra/C2IntelFeeds

    726View on GitHub↗

    Automatically created C2 Feeds | Also posted via @drb_ra

    REXX
    View on GitHub↗726
  • fireeye/iocsfireeye avatar

    fireeye/iocs

    470View on GitHub↗

    FireEye Publicly Shared Indicators of Compromise (IOCs)

    View on GitHub↗470
  • inquest/python-iocextractInQuest avatar

    InQuest/python-iocextract

    580View on GitHub↗

    Defanged Indicator of Compromise (IOC) Extractor.

    Python
    View on GitHub↗580
  • inquest/threatingestorInQuest avatar

    InQuest/ThreatIngestor

    917View on GitHub↗

    Extract and aggregate threat intelligence.

    Python
    View on GitHub↗917
  • intelowlproject/intelowlintelowlproject avatar

    intelowlproject/IntelOwl

    4,605View on GitHub↗

    IntelOwl is a threat intelligence platform and security orchestration engine designed to aggregate, analyze, and enrich security observables. It functions as a security incident investigation tool and a threat intelligence aggregator, collecting data on files, domains, and IP addresses from diverse internal and external sources. The system differentiates itself through playbook-based workflow automation, allowing users to define reusable sequences of analysis tasks that trigger subsequent jobs based on prior outputs. It unifies disparate security data into a common schema and utilizes protoco

    Pythoncyber-securitycyber-threat-intelligencecybersecurity
    View on GitHub↗4,605
  • jpsenior/threataggregatorJ

    jpsenior/threataggregator

    0View on GitHub↗
    View on GitHub↗0
  • karimhabush/cyberowlkarimhabush avatar

    karimhabush/cyberowl

    258View on GitHub↗

    Aggregates security advisories from 10 international CERTs daily and provides an AI skill that cross-references alerts against your project's tech stack.

    Python
    View on GitHub↗258
  • keithjjones/fileintelkeithjjones avatar

    keithjjones/fileintel

    123View on GitHub↗

    A modular Python application to pull intelligence about malicious files

    Python
    View on GitHub↗123
  • keithjjones/hostintelkeithjjones avatar

    keithjjones/hostintel

    274View on GitHub↗

    A modular Python application to collect intelligence for malicious hosts.

    Python
    View on GitHub↗274
  • michael-yip/threattrackermichael-yip avatar

    michael-yip/ThreatTracker

    71View on GitHub↗

    ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a set of Google Custom Search Engines.

    Python
    View on GitHub↗71
  • misp/mispMISP avatar

    MISP/MISP

    6,360View on GitHub↗

    MISP is an open-source threat intelligence sharing platform designed for collecting, storing, and distributing structured threat indicators and intelligence. At its core, it provides a distributed synchronization protocol for transferring events between instances, an attribute-based correlation engine that links matching indicators across events, and a REST API with an OpenAPI specification for programmatic access to threat data. The platform uses formal data formats for JSON, taxonomy, galaxy, and object templates to enable compatibility across tools and communities. The platform distinguish

    PHP
    View on GitHub↗6,360
  • mitre/advmlthreatmatrixmitre avatar

    mitre/advmlthreatmatrix

    1,110View on GitHub↗

    We are excited to announce the new and interactive release of the AdvML Threat Matrix under a newly branded name: ATLAS - Adversarial Threat Landscape for Artificial-Intelligence Systems!

    View on GitHub↗1,110
  • mlsecproject/combinemlsecproject avatar

    mlsecproject/combine

    656View on GitHub↗

    Tool to gather Threat Intelligence indicators from publicly available sources

    Python
    View on GitHub↗656
  • mlsecproject/tiq-testmlsecproject avatar

    mlsecproject/tiq-test

    179View on GitHub↗

    Threat Intelligence Quotient Test - Dataviz and Statistical Analysis of TI feeds

    R
    View on GitHub↗179
  • opencti-platform/openctiOpenCTI-Platform avatar

    OpenCTI-Platform/opencti

    8,812View on GitHub↗

    OpenCTI is a cyber threat intelligence platform and knowledge base used to store, manage, and analyze technical security data. It functions as a threat intelligence visualization tool and an enterprise security data orchestrator that maps relationships between threat actors, malware, and vulnerabilities. The platform utilizes the STIX and TAXII standards for data representation and exchange, allowing for the sharing and receiving of standardized intelligence bundles. It distinguishes itself by converting complex security information into visual relationship diagrams and geographic maps to ide

    TypeScriptcticybercybersecurity
    View on GitHub↗8,812
  • pidydx/pyiocepidydx avatar

    pidydx/PyIOCe

    18View on GitHub↗

    Python OpenIOC Editor

    Python
    View on GitHub↗18
  • pushsecurity/saas-attackspushsecurity avatar

    pushsecurity/saas-attacks

    1,427View on GitHub↗

    Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown

    View on GitHub↗1,427
  • rep/hpfeedsrep avatar

    rep/hpfeeds

    218View on GitHub↗

    Honeynet Project generic authenticated datafeed protocol

    Python
    View on GitHub↗218
  • sigmahq/sigmaSigmaHQ avatar

    SigmaHQ/sigma

    10,136View on GitHub↗

    Sigma is a suite of tools for defining generic log signatures and translating them for multiple backends. It provides a structured way to define malicious behavior and detection logic independently of any specific backend technology, acting as a translation engine that maps generic event fields and correlation logic to the proprietary query languages of security data lakes and SIEM platforms. The project features a plugin-based multi-backend query generator that exports security detections into various database and log management formats. It also includes a threat framework mapping tool that

    Pythonelasticsearchidslogging
    View on GitHub↗10,136
  • silascutler/malpipesilascutler avatar

    silascutler/MalPipe

    110View on GitHub↗

    Malware/IOC ingestion and processing engine

    Python
    View on GitHub↗110
  • yara-rules/rulesYara-Rules avatar

    Yara-Rules/rules

    4,712View on GitHub↗

    This project is a community-curated repository of YARA rules used to detect malware, webshells, and other malicious patterns in files. It serves as a dataset of signatures for identifying known malware families, software packers, and threat intelligence indicators. The collection provides specialized detection capabilities for identifying exploit kits and anti-analysis evasion techniques, such as anti-debugging and anti-virtualization methods. It also includes signatures for cryptographic algorithm detection and the identification of unauthorized remote administration tools on servers. The r

    YARA
    View on GitHub↗4,712
  • abusesa/abusehelperabusesa avatar

    abusesa/abusehelper

    125View on GitHub↗

    A framework for receiving and redistributing abuse feeds

    Python
    View on GitHub↗125
  • yeti-platform/yetiyeti-platform avatar

    yeti-platform/yeti

    1,996View on GitHub↗

    Your Everyday Threat Intelligence

    Python
    View on GitHub↗1,996