Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'ioc'

View all threats tagged with 'ioc'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: ioc

Threats Tagged 'ioc'

Click on any threat for detailed analysis and mitigation recommendations

Built a self-hosted CVE + IOC intelligence tool "BRIEFR", first module of a bigger self-hosted SIEM idea I scoped back down to size
0

BRIEFR is a self-hosted, open-source tool designed to provide CVE and IOC intelligence as part of a modular SIEM approach. It aggregates data from multiple threat intelligence sources such as NVD, CISA KEV, FIRST EPSS, and various exploit feeds, scoring CVEs against a user's technology stack. The tool also supports IOC lookups via free-tier VirusTotal, AbuseIPDB, MalwareBazzar, and URLHaus, and integrates Sigma community rules and SIEM query starters tied to ATT&CK. BRIEFR is currently in early alpha, intended for personal use with no major issues reported, and is not a vulnerability or threat itself. It is a security tool aimed at improving threat intelligence and situational awareness.

Join the discussion
PE structural validation notes (delay-load, exports, VS_VERSIONINFO) + IOCX v0.7.5 release
0

This report announces the release of IOCX v0.7.5, an open-source PE (Portable Executable) structural validator, and provides detailed notes on PE format ambiguities related to delay-load imports, exports, VS_VERSIONINFO, and resource hierarchy. The release includes new parser/validator pairs and reason codes to improve detection of structural anomalies in PE files. The tool aims to enhance PE format validation with precise handling of ambiguous cases and robust error reporting.

Join the discussion
Malicious SHA-256 file hash f8a2d018127d… (OffSeq Mirage)
0

OffSeq Mirage honeypot sensors observed this SHA-256 file hash 2 time(s) in attacker activity between 2026-07-09 and 2026-07-10. Observed technique: T1105 (Ingress Tool Transfer). Seen from attacker infrastructure in TZ, TH. File hashes fingerprint a specific malicious payload (a dropper, web shell, miner, or post-exploitation tool) that was staged or delivered during the attack. Match it against files in your environment and your EDR/AV and threat-intel feeds.

Join the discussion

Showing 1 to 3 of 3 results

Filters:Tag: ioc
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses