MISP (core software) - Open Source Threat Intelligence and Sharing Platform
-
Updated
Aug 26, 2026 - PHP
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
Extract and aggregate threat intelligence.
Open Source Platform for storing, organizing, and searching documents related to cyber threats
Modular OSINT and attack surface analysis platform for authorized security research, with risk scoring, attack paths, and report generation.
An ongoing & curated collection of awesome software best practices and remediation techniques, libraries and frameworks, E-books and videos, Technical guidelines and important resources about Threat Intelligence.
Open-source cyber threat intelligence workstation for OSINT triage, Threat Actor Profiles, AI-assisted analysis, and hunt-query generation.
🦊 DISINFOX is a threat intelligence exchange platform for disinformation implementing the DISARM framework at its core.
Seamless Threat Intelligence Platform
Web-based IOC management platform with threat intelligence enrichment for SOC teams
Project Context Clues aim to vectorize CyberOps recon and threat intel data for AI driven systems.
Automated IP blacklist aggregator from 23 threat intelligence sources - updated hourly via GitHub Actions
A nonprofit, open-source vulnerability disclosure platform built for security researchers.
Theory automates adversary profiling using public threat intelligence sources. Input a threat actor name. Output a structured dossier covering TTPs, infrastructure, malware, and detection opportunities.
Open-source Python CTI pipeline that collects and enriches IoCs from five feeds, generates a Plotly dashboard and CSV export, and forecasts seven-day threat trends for SOC analysts.
A 90s-themed dashboard for live threat intel from AlienVault OTX. Includes file/URL scanning, custom charting, and hacker-style UI.
TESTING - 🌐 Centralized platform for aggregating and visualizing global CVE data — including feeds from NVD, MITRE, CNNVD, JVN, CERT-FR, and more. Built to unify vulnerability intelligence across borders.
A companion piece to the IEEE paper of the same name.
SATRAP-DL: Semi-Automated Threat Reconnaissance and Analysis Powered by DECIPHER Logic. A suite of tools for computer-aided CTI analysis and automated incident handling informed by CTI, provided respectively by its sub-systems SATRAP and DECIPHER.
KATANA is an advanced Threat Intelligence & Active Defense platform for Sophos Firewalls. Built for SOC analysts, it features offline forensic log analysis, PyQt6 data visualization, and automated live mitigation (AEGIS).
Add a description, image, and links to the threat-intelligence-platform topic page so that developers can more easily learn about it.
To associate your repository with the threat-intelligence-platform topic, visit your repo's landing page and select "manage topics."