ThreatIngestor

From GCA ACT
Revision as of 02:59, 4 July 2024 by Globalcyberalliance (talk | contribs) (Created via script)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigationJump to search

Description

Flexible, configuration-driven, extensible framework for consuming threat intelligence. ThreatIngestor can watch Twitter, RSS feeds, and other sources, extract meaningful information like C2 IPs/domains and YARA signatures, and send that information to other systems for analysis.

More Information

URL: https://github.com/InQuest/ThreatIngestor

Maintenance Status: Active

Last Updated Date: < 1 year

Formats Available: See website.

Social Media Links: InQuest: File-based Security Automation for End-user Risk (youtube.com)

Contact Information: [email protected]

License Information: GPL-2.0 license