FireHOL IP Aggregator Logo

FireHOL IP Aggregator

0
Free
Visit Website

Application for keeping feeds from blocklist-ipsets (*.netset and *.ipset files) with historical changes, HTTP-based API service for search requests, data processing includes updating last_added field, maintaining deleted data, timeline based on events, start with 'docker-compose up', API functions for search requests like POST /search and GET /search/ip, access API documentation by requesting unspecified URL, Python client package fiaclient available for usage.

FEATURES

ALTERNATIVES

Stixview is a JS library for embeddable interactive STIX2 graphs, aiming to bridge the gap between CTI stories and structured CTI snapshots.

Lists of sources and utilities to hunt, detect, and prevent evildoers.

yarAnalyzer creates statistics on a yara rule set and files in a sample directory, generating tables and CSV files, including an inventory feature.

A collection of YARA rules for Windows, Linux, and Other threats.

Provides breach and attack simulation products for security control validation, offering three different products to meet the needs of organizations of various sizes and maturity levels.

msticpy is a library for InfoSec investigation and hunting in Jupyter Notebooks with extensive functionality for log data analysis, threat intelligence enrichment, and visualization.

Container of 200 Windows EVTX samples for testing detection scripts and training on DFIR.

Freely available network IOCs for monitoring and incident response

PINNED