Skip to content
#

threat-intelligence-feeds

Here are 19 public repositories matching this topic...

aegistrace-threat-intelligence

Open-source Python CTI pipeline that collects and enriches IoCs from five feeds, generates a Plotly dashboard and CSV export, and forecasts seven-day threat trends for SOC analysts.

  • Updated Jul 6, 2026
  • Python

🛡️ Curated collection of 300+ free, open-source and some commercial Threat Intelligence feeds – IP, DNS, URL, hashes, CVEs, MISP and more with auto-validated and status-checked daily via GitHub Actions.

  • Updated Sep 19, 2026
  • Python

threatXmanager is an open source SDK by CorreaCyberLabsLTD for cyber threat intelligence management and incident response. Built on a STIX2 schema, it centralizes observables analysis and integrates with tools like MISP, TheHive, and MITRE ATT&CK.

  • Updated May 1, 2026
  • Python

Threat Intelligence is a branch of cybersecurrity that involves gathering information about adversaries, their infrastructure, motives, TTPs, and history. This project covers an investigation into "Nexus Zeta", following an uptick in cyber attacks across Europe targeting government sectors and critical infrastructure.

  • Updated May 3, 2026

First-hand technical intelligence on the Orova data-extortion group. Four Tor services (two previously unreported), full extortion lifecycle with dates, 36-victim dataset, operator tradecraft analysis, and Sigma rules. Includes two reusable methods: CUID leak-site timeline reconstruction and C2PA provenance in ransomware branding.

  • Updated Aug 25, 2026

Add this topic to your repo

To associate your repository with the threat-intelligence-feeds topic, visit your repo's landing page and select "manage topics."

Learn more