iocs
Here are 73 public repositories matching this topic...
Language:All
Sort:Most stars
TheHive: a Scalable, Open Source and Free Security Incident Response Platform
- Updated
Jul 25, 2025 - Scala
Real-time HTTP Intrusion Detection
- Updated
Feb 13, 2024 - Go
Cortex: a Powerful Observable Analysis and Active Response Engine
- Updated
Jul 16, 2025 - Scala
Awesome Security lists for SOC/CERT/CTI
- Updated
Nov 6, 2025 - YARA
Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional free threat intelligence. Slava Ukraini. Glory to Ukraine.
- Updated
Jun 26, 2023 - YARA
Automatically created C2 Feeds
- Updated
Nov 5, 2025 - REXX
Repository of YARA rules made by Trellix ATR Team
- Updated
Mar 18, 2025 - YARA
Awesome list of keywords and artifacts for Threat Hunting sessions
- Updated
Aug 4, 2025 - PowerShell
Documentation of TheHive
- Updated
Sep 20, 2023
The OSINT Omnibus (beta release)
- Updated
May 20, 2024 - Python
Bringing you the best of the worst files on the Internet.
- Updated
Apr 16, 2021 - Shell
本项目致力于收集网上公开来源的威胁情报,主要关注信誉类威胁情报(如IP/域名等),以及事件类威胁情报。
- Updated
Oct 28, 2017 - Python
👾 a decade of resources for security researchers: pentesting, CTF, wargames, cryptography, forensics, reverse engineering, IoCs, botnets, cloud hacking, linux hacking, steganography, vulnerabilities, etc.
- Updated
Dec 3, 2024 - C
Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security related information) from text. It uses grammars rather than regexes which makes it more readable, maintainable, and hackable. Explore our interactive documentation here:https://hightower.space/ioc-finder/
- Updated
Nov 16, 2023 - Python
Extract indicators of compromise from text, including "escaped" ones.
- Updated
Apr 19, 2020 - Go
Open Dataset of Cobalt Strike Beacon metadata (2018-2022)
- Updated
Mar 28, 2022 - Jupyter Notebook
Historical list of {Cobalt Strike,NanoHTTPD} servers
- Updated
Apr 30, 2019
This repository contains Malicious Indicator of Compromise (IOC) blocklist for MISP, firewall which is vital for cybersecurity professionals to enhance threat detection and improve incident response capabilities.
- Updated
Sep 17, 2025 - Python
BlackBerry Threat Research & Intelligence
- Updated
Oct 20, 2023 - Jupyter Notebook
Improve this page
Add a description, image, and links to theiocs topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with theiocs topic, visit your repo's landing page and select "manage topics."