CTIChef.com Detection Feeds is a cyber threat intelligence service offering three tiers of detection rule feeds: 1. New Detection Rules Feed: A free service that provides a continuous stream of newly published detection rules collected from over 40 public GitHub repositories. This feed adds approximately 6 new entities per day and is designed for individual researchers, students, or security teams with limited budgets who want to track emerging detection trends. 2. Detection Rules Pro Feed: A paid service ($500/month) that delivers both new rules and rule modifications. The rules are pre-processed with extracted key observables (IPs, hashes, etc.) for direct implementation in SIEM/TIP platforms. This feed adds approximately 511 entities per day and is targeted at SOC teams and detection engineers requiring actionable data. 3. Enterprise Detection Intelligence Feed: A premium service ($1500/month) that builds upon the Pro feed by adding analysis and guidance, including rule change analysis with impact assessments, correlation to active CVEs and threat campaigns, and weekly detection engineering briefs. This feed adds approximately 595 entities per day and is designed for mature security operations centers and threat intelligence teams. The platform focuses on making detection rules accessible and actionable for security teams at different maturity levels, enabling them to enhance their threat detection capabilities with community-sourced intelligence.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
ThreatMiner is a threat intelligence portal that aggregates data from various sources and provides contextual information related to indicators of compromise (IOCs).
Search engine for Windows executable files and hashes, providing insights into file prevalence, behavior, and security information.
VX-Underground is a vast online repository of malware samples, featuring various collections for cybersecurity professionals and researchers to analyze and combat cyber threats.
A tracker that detects and logs SYN packets with a specific signature generated by the Mirai malware, providing real-time information on Mirai-based campaigns.
Malware Patrol offers a range of threat intelligence solutions, including enterprise data feeds, DNS firewall, phishing threat intelligence, and small business protection.
The Trystero Project is a threat intelligence platform that measures email security efficacy and provides various tools and resources, while VMware Carbon Black offers endpoint protection and workload security solutions.
Packet Storm is a global security resource providing around-the-clock information and tools to mitigate personal data and fiscal loss on a global scale.
An all-in-one email outreach platform for finding and connecting with professionals, with features for lead discovery, email verification, and cold email campaigns.
In-depth threat intelligence reports and services providing insights into real-world intrusions, malware analysis, and threat briefs.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.