ThreatMiner Logo

ThreatMiner

0
Free
Visit Website

ThreatMiner is a threat intelligence portal designed to enable analysts to research under a single interface. It aggregates data from various open source feeds and provides contextual information related to indicators of compromise (IOCs). The portal allows analysts to research, pivot, and enrich data, and also provides links to external resources for additional information. ThreatMiner relies on various open source tools and data feeds, including IOCParser, APTNotes, CIRCL, VirusTotal, Malwr.com, Hybrid-Analysis, Alienvault OTX, ipinfo, Robtex, CleanMX, VirusShare, and Sinica. It also performs native DNS enrichment via native applications. The portal aims to free analysts from data collection and provide a single interface for carrying out tasks, from reading reports to pivoting and data enrichment.

FEATURES

ALTERNATIVES

A comprehensive Threat Intelligence Program Management Solution for managing the entire CTI lifecycle.

Check the reputation of an IP address to identify potential threats.

A framework for managing cyber threat intelligence in structured formats.

CyBot is a free and open source threat intelligence chat bot with a community-driven plugin framework.

A platform for accessing threat intelligence and collaborating on cyber threats.

QRadio is a tool/framework designed to consolidate cyber threats intelligence sources.

Proof-of-concept implementation of TAXII services for developers and non-developers.

Python APIs for serializing and de-serializing STIX2 JSON content with higher-level APIs for common tasks.