Repository navigation

#

misp

Indicators of Compromises (IOC) of our various investigations

YARA
1757
3 天前

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

Python
1424
5 天前

This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such as IP, URL, CVE and Hash.

Python
663
3 个月前

Warning lists to inform users of MISP about potential false-positives or other information in indicators

Python
567
15 天前

Clusters and elements to attach to MISP events or attributes (like threat actors)

Python
558
1 天前

Python library using the MISP Rest API

Python
460
15 天前

This project is a SIEM with SIRP and Threat Intel, all in one.

Shell
432
5 个月前

Modules for expansion services, enrichment, import and export in MISP and other tools.

Python
354
10 天前

MISP Docker (XME edition)

Shell
282
1 年前

🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.

Python
261
2 年前

A (nearly) production ready Dockered MISP

Shell
231
1 年前