ONYPHE is a cyber defense search engine that scans the internet and dark web to discover exposed assets, providing a comprehensive asset inventory and real-time monitoring to identify vulnerabilities and potential risks. It uses a domain name-based approach and key/value pairs to build an inventory, and offers a query language to receive alerts on exposed assets. With its massive database of DNS entries, banners, and port scans, ONYPHE helps organizations avoid risks, cut ransomware risks, and identify critical vulnerabilities, enabling proactive cyber defense.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
OpenPhish provides real-time phishing trends, detecting new phishing URLs and targeting various brands.
Signature-based YARA rules for detecting and preventing threats within Linux, Windows, and macOS systems.
Malware Patrol offers a range of threat intelligence solutions, including enterprise data feeds, DNS firewall, phishing threat intelligence, and small business protection.
A framework for managing cyber threat intelligence in structured formats.
Container of 200 Windows EVTX samples for testing detection scripts and training on DFIR.
BotScout.com provides proactive bot detection, screening, and banning through a powerful API.
CIFv3 is the next version of the Cyber Intelligence Framework, developed against Ubuntu16, encouraging users to transition from CIFv2.
A reference implementation for collecting events and performing CAR analytics to detect potential adversary activity.
A cybersecurity tool for managing data points and cyber threat indicators with a focus on neo4j data traversal.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.