Category 6: Analytical and Threat Assessment Tools⚓︎
Overview⚓︎
This category encompasses the frameworks and repositories used to synthesize raw data into actionable intelligence. It supports the "Analysis" phase of the intelligence cycle.
Threat Intelligence Platforms⚓︎
- MISP - Open source threat intelligence platform.
- OpenCTI - Open Cyber Threat Intelligence platform.
- MITRE ATT&CK Navigator - Visualizing adversary techniques.
- ThreatConnect - Threat intelligence operations platform.
- YARA - Tool for identifying and classifying malware.
Knowledge Bases & Curated Lists⚓︎
- OSINT Framework - Comprehensive directory of tools.
- Nixintel's Resource List - Massive organized collection.
- The Ultimate OSINT Collection - Airtable database of sources.
- Rae Baker's Deep Dive - Advanced OSINT techniques.
- Awesome OSINT (GitHub) - Curated list of OSINT tools.
- OSINT Tools (GitHub) - List of tools and frameworks.
- Non-typical OSINT-guide (GitHub) - Advanced and unconventional methods.
- OSINT for Countries (GitHub) - Resources categorized by country.
Analysis Tools⚓︎
- Maltego - Link analysis visualization.
- Gephi - Open source graph visualization platform.
- Neo4j - Graph database for analyzing relationships.
- Hunchly - Web page capture and evidence collection tool.
- SpiderFoot - Automated OSINT collection.
- Poison (GitHub) - Scalable OSINT scraping tool.
- OSINT Browser Extensions (GitHub) - Extensions to aid investigations.