Threat Intelligence Toolkit (Organized)

MITRE ATT&CK

A knowledge base of adversary tactics and techniques based on real-world observations, used for understanding and detecting cyber threats.


VirusTotal

A tool that analyzes files and URLs for viruses, malware, and other suspicious content by using multiple antivirus engines and tools.


ThreatCrowd

A platform for searching and analyzing threat intelligence data, including IPs, domains, and malware hashes associated with cyber attacks.


MISP (Malware Information Sharing Platform & Threat Sharing)

An open-source threat intelligence platform designed for collecting, storing, and sharing structured threat information such as indicators of compromise (IOCs), TTPs, and threat actor profiles, enabling collaboration among organizations and security teams.


ThreatConnect

A threat intelligence platform that combines threat data aggregation, analytics, and orchestration to help security teams manage, correlate, and act on threat intelligence within a single operational workflow.


APT_REPORT

A curated collection of APT (Advanced Persistent Threat) reports and indicators, organized by threat group and region. Useful for studying attacker behaviors, malware families, and techniques used in real-world cyber espionage campaigns.


Anomali