<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <title>ioc</title>
    <link rel="self" type="application/atom+xml" href="https://links.biapy.com/guest/tags/1297/feed"/>
    <updated>2026-06-15T01:50:18+00:00</updated>
    <id>https://links.biapy.com/guest/tags/1297/feed</id>
            <entry>
            <id>https://links.biapy.com/links/12705</id>
            <title type="text"><![CDATA[Rustinel]]></title>
            <link rel="alternate" href="https://karib0u.github.io/rustinel/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/12705"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Rustinel is an open-source endpoint detection project for Windows and Linux.

It collects native host telemetry using ETW on Windows and eBPF on Linux, normalizes events into a shared model, evaluates Sigma, YARA, and IOC detections, and writes alerts as ECS NDJSON.

Rustinel is designed for blue teams, detection engineers, researchers, and anyone who wants a transparent endpoint detection engine they can inspect, run, test, and extend.

- [Rustinel @ GitHub](https://github.com/Karib0u/rustinel).]]>
            </summary>
            <updated>2026-05-14T14:18:27+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/11755</id>
            <title type="text"><![CDATA[Cyberbro]]></title>
            <link rel="alternate" href="https://docs.cyberbro.net/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/11755"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services. 

Cyberbro is an open-source threat intelligence and indicator analysis platform.
Whether you&amp;#039;re a new user or a seasoned developer, this documentation will help you get started, configure, and make the most of Cyberbro&amp;#039;s features.

- [Cyberbro @ GitHub](https://github.com/stanfrbd/cyberbro).

Related contents:

- [Cyberbro - L&amp;#039;analyse d&amp;#039;IoC facile et en open source @ Korben :fr:](https://korben.info/cyberbro-analyse-ioc-osint.html).
- [Erreur 403 | \#63 :fr:](https://newsletter.erreur403.fr/p/erreur-403-63).]]>
            </summary>
            <updated>2026-02-12T09:36:30+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/1813</id>
            <title type="text"><![CDATA[Cyberbro]]></title>
            <link rel="alternate" href="https://cyberbro.net/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/1813"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[A simple application that extracts your Indicators of Compromise (IoCs) from garbage input and checks their reputation using multiple CTI services.

This project aims to provide a simple and efficient way to check the reputation of your observables using multiple services, without having to deploy a complex solution.

- [Cyberbro @ GitHub](https://github.com/stanfrbd/cyberbro).]]>
            </summary>
            <updated>2025-08-28T20:59:54+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/5867</id>
            <title type="text"><![CDATA[ThreatIngestor]]></title>
            <link rel="alternate" href="https://github.com/InQuest/ThreatIngestor" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/5867"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Extract and aggregate threat intelligence. An extendable tool to extract and aggregate IOCs from threat feeds.

ThreatIngestor can be configured to watch Twitter, RSS feeds, or other sources, extract meaningful information such as malicious IPs/domains and YARA signatures, and send that information to another system for analysis.]]>
            </summary>
            <updated>2025-08-29T08:14:34+00:00</updated>
        </entry>
    </feed>
