ThreatMiner is a threat intelligence portal designed to enable analysts to research under a single interface. It aggregates data from various open source feeds and provides contextual information related to indicators of compromise (IOCs). The portal allows analysts to research, pivot, and enrich data, and also provides links to external resources for additional information. ThreatMiner relies on various open source tools and data feeds, including IOCParser, APTNotes, CIRCL, VirusTotal, Malwr.com, Hybrid-Analysis, Alienvault OTX, ipinfo, Robtex, CleanMX, VirusShare, and Sinica. It also performs native DNS enrichment via native applications. The portal aims to free analysts from data collection and provide a single interface for carrying out tasks, from reading reports to pivoting and data enrichment.
This tool is not verified yet and doesn't have listed features.
Did you submit the verified tool? Sign in to add features.
Are you the author? Claim the tool by clicking the icon above. After claiming, you can add features.
A PowerShell script to interact with the MITRE ATT&CK Framework via its own API using the deprecated MediaWiki API.
Tools to export data from MISP MySQL database for post-incident analysis and correlation.
A community-driven public malware repository providing access to malware samples, tools, and resources for the cybersecurity community.
Real-time, container-based file scanning system for threat hunting and incident response.
A project focusing on understanding and combating threats to the Internet economy and net citizens.
YARA signature and IOC database for LOKI and THOR Lite scanners with high quality rules and IOCs.