Do you want to get threat intelligence data about a file, an IP or a domain?
Do you want to get this kind of data from multiple sources at the same time using a single API request?
You are in the right place!
This application is built to scale out and to speed up the retrieval of threat info.
It can be integrated easily in your stack of security tools to automate common jobs usually performed, for instance, by SOC analysts manually.
Intel Owl is composed of analyzers that can be run to retrieve data from external sources (like VirusTotal or AbuseIPDB) or to generate intel from internal analyzers (like Yara or Oletools)
This solution is for everyone who needs a single point to query for info about a specific file or observable (domain, IP, URL, hash).
Main features:
- full django-python application
- easily and completely customizable, both the APIs and the analyzers
- clone the project, set up the configuration and you are ready to run
- Official frontend client: IntelOwl-ng provides features such as dashboard, visualizations of analysis data, easy to use forms for requesting new analysis, etc.
Documentation
Documentation about IntelOwl installation, usage, contribution can be found at https://intelowl.readthedocs.io/.
Blog posts
v1.0.0 Announcement
First announcement
Free Internal Modules Available
- Static Doc Analysis
- Static RTF Analysis
- Static PDF Analysis
- Static PE Analysis
- Static Generic File Analysis
- Strings analysis
- PE Signature verification
- Cuckoo (requires at least one working Cuckoo instance)
- MISP (requires at least one working MISP instance)
- Yara (Community, Neo23x0, Intezer and McAfee rules are already available. There's the chance to add your own rules)
External Services Available
required paid or trial API key
- GreyNoise v2
required paid or free API key
- VirusTotal v2 + v3
- HybridAnalysis
- Intezer
- Farsight DNSDB
- Hunter.io - Email Hunting
- ONYPHE
- Censys.io
- SecurityTrails
required free API key
- GoogleSafeBrowsing
- AbuseIPDB
- Shodan
- HoneyDB
- AlienVault OTX
- MaxMind
- Auth0
needed access request
- CIRCL PassiveDNS + PassiveSSL
without api key
- Fortiguard URL Analyzer
- GreyNoise Alpha API v1
- Talos Reputation
- Tor Project
- Robtex
- Threatminer
- Abuse.ch MalwareBazaar
- Abuse.ch URLhaus
- Team Cymru Malware Hash Registry
- Tranco Rank
- Google DoH
- CloudFlare DoH Classic
- CloudFlare DoH Malware
- Classic DNS resolution
Legal notice
You as a user of this project must review, accept and comply with the license terms of each downloaded/installed package listed below. By proceeding with the installation, you are accepting the license terms of each package, and acknowledging that your use of each package will be subject to its respective license terms.
osslsigncode, stringsifter, peepdf, oletools, MaxMind-DB-Reader-python, pysafebrowsing, PyMISP, OTX-Python-SDK, yara-python, GitPython, Yara community rules, Neo23x0 Yara sigs, Intezer Yara sigs, McAfee Yara sigs
Google Summer Of Code
The project was accepted to the GSoC 2020 under the Honeynet Project!!
Stay tuned for upcoming new features developed by Eshaan Bansal (Twitter).
About the author
Feel free to contact the author at any time: Matteo Lodi (Twitter)
We also have a dedicated twitter account for the project: @intel_owl.
via KitPloit
Related links
- Hacker Hardware Tools
- Bluetooth Hacking Tools Kali
- Beginner Hacker Tools
- Hack Tools
- Hack Tools For Mac
- Best Hacking Tools 2020
- Pentest Tools Nmap
- Nsa Hacker Tools
- Pentest Tools Website Vulnerability
- Hacker Search Tools
- Pentest Box Tools Download
- Pentest Tools For Windows
- Hack Tool Apk
- What Is Hacking Tools
- Hacking Tools For Windows
- Pentest Tools Nmap
- Hacking Tools Download
- Hacker Tools For Pc
- Hacker Tools Apk Download
- World No 1 Hacker Software
- Hacking Tools For Games
- Nsa Hack Tools
- What Is Hacking Tools
- Nsa Hack Tools Download
- Pentest Box Tools Download
- Hack Tools 2019
- Best Pentesting Tools 2018
- Hacking Tools For Windows Free Download
- Hack Apps
- Github Hacking Tools
- Hacker Tools For Pc
- Hacking Tools For Kali Linux
- Pentest Tools Kali Linux
- Hacker Tools 2019
- Hacking Tools Software
- Pentest Tools Website Vulnerability
- Hacking App
- Pentest Tools Url Fuzzer
- Hack Tools 2019
- Pentest Tools Windows
- Hack Apps
- Github Hacking Tools
- Hacking Tools Github
- Install Pentest Tools Ubuntu
- Pentest Tools Android
- Hack Tools 2019
- Hacking Tools
- Computer Hacker
- Github Hacking Tools
- Pentest Tools Website Vulnerability
- Pentest Tools Open Source
- Hacking Tools Hardware
- Pentest Tools Find Subdomains
- World No 1 Hacker Software
- Blackhat Hacker Tools
- Hackrf Tools
- Hacker
- Pentest Tools Github
- Hacker Tools Github
- Hack Tools For Pc
- Hack Tools Pc
- Hacking Tools Free Download
- Pentest Tools Apk
- Pentest Tools Url Fuzzer
- What Is Hacking Tools
- Pentest Tools
- Pentest Tools Url Fuzzer
- Termux Hacking Tools 2019
- Underground Hacker Sites
- Hacker Tools Online
- Top Pentest Tools
- Hacker Tools For Pc
- Hackrf Tools
- Computer Hacker
- Hacking Tools Windows
- Hacker Tools For Mac
- Hacking Tools Mac
- Hacker Tools Online
- Pentest Tools Windows
- Hacking Tools And Software
- Usb Pentest Tools
- Hack Tools Online
- Hacker Tools Windows
- Hacker Tools Apk Download
- Hackrf Tools
- Pentest Tools Download
- Best Pentesting Tools 2018
- Pentest Tools Online
- Hacking Tools For Mac
- Hack Tools 2019
- Hack Tools For Pc
- Hack Tools Pc
- Hack Tools Download
- Best Hacking Tools 2020
- Pentest Box Tools Download
- Game Hacking
- Hack Tools Github
- Pentest Box Tools Download
- Pentest Tools Alternative
- Pentest Tools Nmap
- Hacking App
- Hack Tools For Windows
- Pentest Tools Port Scanner
- Pentest Tools Website
- Hacker
- Pentest Tools For Mac
- Hacking Tools Mac
- Hacking Tools Free Download
- Usb Pentest Tools
- Hacking Tools Windows
- Hacking Tools Usb
- Tools 4 Hack
- Hacker Tools 2020
- Pentest Tools Download
- Pentest Tools Github
- Hacker Tools 2020
- Black Hat Hacker Tools
- Free Pentest Tools For Windows
- Hacking Tools 2020
- Best Pentesting Tools 2018
- Black Hat Hacker Tools
- Pentest Tools Url Fuzzer
- Hackrf Tools
- Hack Website Online Tool
- Hacker Tools Software
- Hacking App
- Hacker Tools List
- Hacker Tools For Windows
- Hacking Tools 2020
- Hacking Tools Hardware
No comments:
Post a Comment