The FP7-ICT-216026-WOMBAT project aims to provide new means to understand threats targeting the Internet economy and citizens by gathering security-related raw data, enriching it through analysis techniques, and identifying root causes of malicious behaviors. The acquired knowledge is shared with ISPs, CERTs, and security vendors to enhance security investment decisions and boost confidence in the European net economy.
FEATURES
SIMILAR TOOLS
Amazon GuardDuty is a threat detection service for AWS accounts.
A command-line tool that fetches known URLs from various sources to identify potential security threats and vulnerabilities.
Facilitates distribution of Threat Intelligence artifacts to defensive systems.
yarAnalyzer creates statistics on a yara rule set and files in a sample directory, generating tables and CSV files, including an inventory feature.
PolySwarm is a malware intelligence marketplace that aggregates threat detection engines to provide early detection, unique samples, and higher accuracy.
A minimalistic Java library for representing threat model data in a normalized way and automating threat intelligence extraction.
A comprehensive list of APT groups and operations for tracking and mapping different names and naming schemes used by cybersecurity companies and antivirus vendors.
A tool for fetching and visualizing cyber threat intelligence data with Elasticsearch and Kibana integration.
A tool for extracting IOCs from various input sources and converting them into JSON format.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.