Awesome AI Security Tools
Section: Threat Intelligence · 🟢 — Extracts/aggregates IOCs from feeds; integrates with MISP/ThreatKB (pairs well with LLM post-processing). · updated 2026-05-26)
Entry
Appears in 5 awesome lists
🟢 — Extracts/aggregates IOCs from feeds; integrates with MISP/ThreatKB (pairs well with LLM post-processing). · updated 2026-05-26)
Section: Threat Intelligence · 🟢 — Extracts/aggregates IOCs from feeds; integrates with MISP/ThreatKB (pairs well with LLM post-processing). · updated 2026-05-26)
Section: Threat intelligence · Extendable tool to extract and aggregate IOCs from threat feeds including Twitter, RSS feeds, or other sources.
Section: 威胁情报 · 可扩展工具,用于从威胁源(包括Twitter,RSS或其他源)提取和聚合IOC
Section: Tools · Build automated threat intel pipelines sourcing from Twitter, RSS, GitHub, and more.
Section: Tools · Automatically extract and aggregate IOCs including YARA rules from many sources.
MISP threat sharing platform is a free and open source software helping information sharing of threat intelligence including cyber security indicators. A threat intelligence platform for gathering, sharing, storing and correlating Indicators of Compromise of targeted attacks, threat intelligence,…
Vulnerability scanner written in Go which uses the data provided by OSV.dev. Developed by Google to scan dependencies across multiple languages and package managers for known vulnerabilities. Supports container scanning, license scanning, and guided remediation. Works with lockfiles, SBOMs, and…
Visualize and graph Active Directory permission configs ("control relations") to audit questions such as "Who can read the CEO's email?" and similar.
Binary analysis and management framework enabling easy organization of malware and exploit samples.
Tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples, described as "the pattern matching swiss army knife" for file patterns and signatures.
IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&CK matrix related
Repository of detection rules, covering persistence techniques as well. You can even use filters such as --filter tag=attack.persistence or specifically for one technique tag=attack.t1084.
Gather and combine multiple threat intelligence feed sources into one customizable, standardized CSV-based format.