QRadio is a tool/framework designed to consolidate cyber threats intelligence sources. The goal of the project is to establish a robust modular framework for extraction of intelligence data from vetted sources. It uses multiple threat intelligence sources for searching supplied data. Currently we crawl the following: You can search by the following data types: Domain IPv4 Hash Imphash Mutex Threat Info databases: ThreatCrowd Virustotal Cymon IBM X-Force Exchange Metadefender #totalhash Sandboxes: Malwr Threatexpert Blacklists: ASPROX Tracker Feodot Tacker Zeus Tracker malc0de McAfee Other: FortiGuard hpHosts Credentials for sources /lib/config.py Usage python cli_qradio.py Options Output verbosity: Return CSV if not specified -v, --verbose - Show verbose output From Domain -100, --sonar_domain - SONAR <domain> to IPv4, Hash, Score, URL, Blacklist -102, --domain_to_ipv4 - Re
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
FireEye Mandiant SunBurst Countermeasures: freely available rules for detecting malicious files and activity
A tool to extract indicators of compromise from security reports in PDF format.
Repository containing IoCs related to Volexity's threat intelligence blog posts and tools.
TIH is an intelligence tool that helps you search for IOCs across multiple security feeds and APIs.
Open source web app for storing and searching Actor related data from users and public repositories.
Repository for detection content with various types of rules and payloads.
Collection of Yara rules for file identification and classification
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.