botvrij.eu Logo

botvrij.eu

0
Free
Visit Website

Freely available network IOCs Monitor your network and raise IDS alerts for suspicious network behavior. Incident Response Use the file hashes for conducting an in-depth incident response investigation. The botvrij.eu data IOCs Botvrij.eu provides different sets of open source IOCs that you can use in your security devices to detect possible malicious activity. The information contains network info (IPs), file hashes, file paths, domain names, URLs. Datasource All the data is gathered via open source information feeds (blog pages and PDF documents) and then consolidated into different datasets. To ensure the quality of the data all entries older than approx. 6 months are removed. MISP MISP is used as a back-end for storing the threat information. The information is added to MISP via ioc-parser, extracted from MISP with PyMISP and formatted with a set of custom Python scripts. This feed is also integrated as an OSINT feed within MISP. It is free! The data is free (obviously, the source of the data is also free). Use the data at your own risk. This project only makes the data easy accessible. It is up to you to decide where and how you want to use it. Content The datasets are available in two formats ioclist.<TYPE> ioclist.<TYPE>.md5 ioclist.<TYPE>.raw ioclist.<TYPE>.raw.md5 The content of both datasets is identical. The .raw contains the

FEATURES

ALTERNATIVES

A community-driven public malware repository providing access to malware samples, tools, and resources for the cybersecurity community.

A curated list of resources for learning about deploying, managing, and hunting with Microsoft Sysmon.

A modular tool for collecting intelligence sources for files and outputting in CSV format.

FireEye Mandiant SunBurst Countermeasures: freely available rules for detecting malicious files and activity

InSights by InQuest is a threat intelligence platform that delivers curated feeds of IOCs and C2 information to help security teams detect and respond to emerging threats.

A system for collecting, managing, and distributing security information on a large scale, developed by CERT Polska.

A simple, self-contained modular host-based IOC scanner for incident responders.

Search engine for Windows executable files and hashes, providing insights into file prevalence, behavior, and security information.

PINNED