cti-python-stix2 Logo

cti-python-stix2

0
Free
Visit Website

This repository provides Python APIs for serializing and de-serializing STIX2 JSON content, along with higher-level APIs for common tasks, including data markings, versioning, and for resolving STIX IDs across multiple data sources. Installation: Install with pip: $ pip install stix2. Usage: To create a STIX object, provide keyword arguments to the type's constructor. Certain required attributes of all objects, such as type or id, will be set automatically if not provided as keyword arguments. To parse a STIX JSON string into a Python STIX object, use parse(). To serialize a STIX object, use serialize().

FEATURES

ALTERNATIVES

Lists of sources and utilities to hunt, detect, and prevent evildoers.

MaxMind provides accurate IP geolocation and online fraud detection solutions to create safer digital experiences.

A simple, self-contained modular host-based IOC scanner for incident responders.

A threat hunting tool for Windows event logs to detect APT movements and decrease the time to uncover suspicious activity.

Tool for visualizing correspondences between YARA ruleset and samples

A serverless application for creating and monitoring URL tokens with threat intelligence and customizable alerts.

An IOC tracker written in Python that queries Google Custom Search Engines for various cybersecurity indicators and monitors domain status using Google Safe Browsing APIs.

Sample detection rules and dashboards for Google Security Operations

PINNED