The Shadowserver Foundation is a nonprofit security organization that collects and shares threat data, provides free daily remediation reports, and partners with network providers, governments, and law enforcement to make the Internet more secure. They offer various tools and resources, including reports on malware, DDoS attacks, and more, as well as a press kit and media coverage. The organization is funded by sponsorships, grants, and charitable donations, and works with national CSIRTs, industry sectors, and law enforcement to improve network security and advance threat research.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Container of 200 Windows EVTX samples for testing detection scripts and training on DFIR.
A Python library for handling TAXII v1.x messages and services to enable automated threat intelligence sharing and indicator exchange.
ONYPHE is a cyber defense search engine that discovers exposed assets and provides real-time monitoring to identify vulnerabilities and potential risks.
A tracker that detects and logs SYN packets with a specific signature generated by the Mirai malware, providing real-time information on Mirai-based campaigns.
Unified repository for Microsoft Sentinel and Microsoft 365 Defender containing security content, detections, queries, playbooks, and resources to secure environments and hunt for threats.
A library of adversary emulation plans to evaluate defensive capabilities against real-world threats.
Silent Push Platform provides preemptive cyber defense by identifying malicious infrastructure before attacks are launched using Indicators of Future Attack (IOFA)™ technology.
Tool for visualizing correspondences between YARA ruleset and samples
A threat intelligence service providing actionable IoCs and security data feeds to help organizations detect, block, and respond to cyber threats.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.