awesome-iocs

IOC repository

A collection of sources of indicators of compromise and related tools.

A collection of sources of indicators of compromise.

GitHub

817 stars
61 watching
113 forks
Language: Shell
last commit: almost 2 years ago
Linked from 4 awesome lists

awesomeawesome-listiocsignatureyara-rules

Awesome IOCs / Contents

IOCs817almost 2 years ago

Awesome IOCs / Contents / IOCs

Indicators817almost 2 years ago
Snort Signatures817almost 2 years ago
Yara Signatures817almost 2 years ago

Awesome IOCs / Contents

Tools817almost 2 years ago

Awesome IOCs / Contents / Tools

IOC Tools817almost 2 years ago
IOC Formats817almost 2 years ago

Awesome IOCs / IOCs / Indicators

0x27/linux.mirai555over 9 years agoLeaked Linux.Mirai Source Code for Research/IoC Development Purposes
Neo23x0/signature-base2,509almost 2 years agoSignature base for my scanner tools
aptnotes/data1,665about 2 years agoAPTnotes data
botherder/targetedthreats188almost 5 years agoCollection of IOCs related to targeting of civil society
circl/osint-feedOpen Source Intelligence for MISP
citizenlab/malware-indicators267almost 6 years agoCitizen Lab Malware Reports
da667/667s_ShitlistHi kids, do you like cyber violence? Wanna see me destroy evil in the blink of an eyelid?
eset/malware-ioc1,698almost 2 years agoIndicators of Compromises (IOC) of our various investigations
fireeye/iocs465over 7 years agoFireEye Publicly Shared Indicators of Compromise (IOCs)
jasonmiacono/IOCs10almost 10 years agoIndicators of compromise for threat intelligence
makflwana/IOCs-in-CSV-format12over 9 years agoThe repository contains IOCs in CSV format for APT, Cyber Crimes, Malware and Trojan and whatever I found as part of hunting and research
nshc-threatrecon/IoC-List9almost 5 years agoNSHC ThreatRecon IoC Repository
pan-unit42/iocs704almost 2 years agoIndicators from Unit 42 Public Reports
swisscom/detections53almost 6 years agoThis repo contains threat intelligence information and threat detection indicators (IOC, IOA) shared by Swisscom CSIRT

Awesome IOCs / IOCs / Snort Signatures

Snort DownloadsSignatures for the Snort (& Suricata) Intrusion Detection System
kingtuna/Signatures4about 11 years agoA mixture of snort and suricata signatures

Awesome IOCs / IOCs / Yara Signatures

0pc0deFR/YaraRules33over 6 years agoMultiple rules for yara-project for detect compiler/packer/protector
InQuest/yara-rules368over 4 years agoA collection of Yara rules we wish to share with the world, most probably referenced from
OALabs/iocsMachine-digestible malware indicators
Yara-Rules/rules4,215over 2 years agoRepository of yara rules
advanced-threat-research/Yara-Rules573over 2 years agoRepository of YARA rules made by McAfee ATR Team
citizenlab/malware-signatures134almost 10 years agoYara rules for malware families seen as part of targeted threats project
intezer/yara-rules126almost 5 years agoYara rules from Intezer
kevthehermit/YaraRules52over 10 years agoMy Yara Rules Collection
reversinglabs/reversinglabs-yara-rules776almost 2 years agoReversingLabs YARA Rules
x64dbg/yarasigs86over 7 years agoVarious Yara signatures (possibly to be included in a release later)

Awesome IOCs / Tools / IOC Tools

InQuest/ThreatIngestor836over 2 years agoFlexible framework for consuming threat intelligence
InQuest/iocextract513about 2 years agoAdvanced Indicator of Compromise (IOC) extractor
Neo23x0/yarGen1,569over 2 years agoyarGen is a generator for YARA rules
mandiant/ioc_writer201over 3 years agoProvide a python library that allows for basic creation and editing of OpenIOC objects
yahoo/PyIOCe63over 11 years agoPython IOC Editor
ninoseki/mitaka1,500almost 2 years agoBrowser extension to lookup IoCs/observables on many sources

Awesome IOCs / Tools / IOC Formats

MISP Malware Information Sharing Platform & Threat Sharing format47almost 2 years agoSpecifications used in the MISP project including MISP core format
Mitre Cyber Observable eXpression (CybOX™)This site contains archived CybOX documentation
Mitre Malware Attribute Enumeration and Characterization (MAEC™)A schema for understanding malware
Mitre Structured Threat Information eXpression (STIX™)A structured language for cyber threat intelligence
YaraThe pattern matching swiss knife for malware researchers (and everyone else)
mandiant/OpenIOC_1.1127over 5 years agoThis repository contains a revised schema, iocterms file, and other supporting documents which are the basis for a draft of a revised version of OpenIOC that we are calling OpenIOC 1.1

Backlinks from these awesome lists:

More related projects: