Threat Intelligence Hunter (TIH) Logo

Threat Intelligence Hunter (TIH)

0
Free
Visit Website

TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs. The idea behind the tool is to facilitate searching and storing of frequently added IOCs for creating your own set of indicators. Requirements: Python 2.7, Argparse, Requests, API keys from Virustotal and URLVoid. Features: Local storage of threat feeds, check an IP against existing threat feeds and your local database, check for Bulk IP address list, check for MD5 Hash.

FEATURES

ALTERNATIVES

A threat intelligence service providing actionable IoCs and security data feeds to help organizations detect, block, and respond to cyber threats.

A collection of YARA rules for Windows, Linux, and Other threats.

Machinae is a tool for collecting intelligence from public sites/feeds about various security-related pieces of data.

eCrimeLabs provides a SOAR platform for threat detection and response, integrated with MISP.

Repository with projects for photo and video hashing, content moderation, and signal exchange.

A summary of the threat modeling posts and final thoughts on the process

PolySwarm is a malware intelligence marketplace that aggregates threat detection engines to provide early detection, unique samples, and higher accuracy.

A threat hunting capability that leverages Sysmon and MITRE ATT&CK on Azure Sentinel