threataggregator

Threat Aggregator

Automates aggregation of security threat data from various online sources

Aggregates security threats from a number of online sources, and outputs to Syslog CEF, Snort Signatures, Iptables rules, hosts.deny, etc.

GitHub

80 stars
12 watching
27 forks
Language: Python
last commit: over 10 years ago
Linked from 2 awesome lists


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
inquest/threatingestorExtracts and aggregates threat intelligence from various sources836
paulpc/nyxAutomates distribution of threat intelligence artifacts to defensive systems.30
threatexpress/persistence-aggressor-scriptA tool for creating and managing persistent malware components that can operate in multiple listener scenarios, including local and foreign listeners.42
mlsecproject/combineTool to gather Threat Intelligence indicators from publicly available sources657
misp/misp-maltegoAn integration tool for Maltego to leverage MISP threat intelligence and the MITRE ATT&CK dataset171
kevthehermit/pastehunterAutomates scanning of publicly hosted pasted data against Yara rules to identify potential security or research threats.1,069
a3sal0n/cyberthreathuntingA collection of tools and resources for threat hunters to identify and respond to cyber threats.861
sroberts/jagerTools for extracting and analyzing threat indicators from various data sources84
opencybersecurityalliance/kestrel-langA language and runtime framework for building reusable, composable threat hunting workflows using Python.302
michael-yip/threattrackerMonitors and alerts on IOCs from Google Custom Search Engines and Safe Browsing APIs.66
fhightower/ioc-finderAn interactive tool for extracting and parsing threat intelligence data from text159
sk4la/plastA modular threat-hunting tool framework for detecting indicators of compromise in incident-response operations.17
aboutsecurity/rastrea2rA tool for hunting and tracking Internet of Things (IoT) security threats by collecting and analyzing indicators of compromise (IOCs)116
botherder/targetedthreatsCollects and analyzes indicators of malicious targeting of civil society organizations.188
svdwi/blueboxAnalyzes and enriches threat intelligence data from various sources to help detect malicious files, URLs, and domains.39