MalPipe Logo

MalPipe

0
Free
Visit Website

MalPipe is a modular malware (and indicator) collection and processing framework designed to pull malware, domains, URLs, and IP addresses from multiple feeds, enrich the collected data, and export the results. Supported feeds include VirusTotal, MalShare, BambenekFeeds, FeodoBlockList, Malc0deIPList, NoThinkIPFeeds, OpenPhishURLs, and TorNodes. To get started, install the required Python libraries by running 'pip install -r requirements.txt' and configure the feeds.

FEATURES

ALTERNATIVES

A comprehensive and unrestricted dataset of security incidents for research and decision-making

Repository of Yara signatures for detecting targeted attacks on civil society organizations

Advanced threat prevention and detection platform leveraging Deep CDR, Multiscanning, and Sandbox technologies to protect against data breaches and ransom attacks.

CIFv3 is the next version of the Cyber Intelligence Framework, developed against Ubuntu16, encouraging users to transition from CIFv2.

Utilize Jupyter Notebooks to enhance threat hunting capabilities by focusing on different threat categories or stages.

A library of event-based analytics written in EQL to detect adversary behaviors, now integrated into the Detection Engine of Kibana.

Deception based detection techniques with MITRE ATT&CK mapping and Honey Resources.

Open Source Intelligence solution for threat intelligence data enrichment and quick analysis of suspicious files or malware.