Hippocampe Logo

Hippocampe

0
Free
Visit Website

Hippocampe is a threat feed aggregator that aggregates feeds from the Internet in an Elasticsearch cluster. It provides a REST API for easy querying, allows analysts to configure confidence levels for feeds, and generates a Hipposcore to aid in determining the maliciousness of observables. It is open source under the AGPL license and integrates well with Cortex and TheHive.

FEATURES

ALTERNATIVES

A community-driven list of sample security analytics for auditing cloud usage and detecting threats in Google Cloud.

Repository of Yara Rules created by TjNel.

Knowledge base workflow management dashboard for YARA rules and C2 artifacts.

A reference implementation for collecting events and performing CAR analytics to detect potential adversary activity.

MISP is an open source threat intelligence platform that enhances threat information sharing and analysis.

An open source threat intelligence platform for storing and managing cyber threat intelligence knowledge.

A tiered cyber threat intelligence service providing detection rules from public repositories with varying levels of analysis, processing, and guidance for security teams.

A tool for fetching and visualizing cyber threat intelligence data with Elasticsearch and Kibana integration.

PINNED