固定されたツイート

Breakglass Intelligence detection rules and IOCs — open source.
103 YARA rules, 55 Suricata rules, 16 KQL queries, 24 STIX bundles, 4 nuclei templates. 1,253 IPs, 1,717 domains, 1,031 SHA256 hashes extracted from 232 investigations.
Everything structured for automation: flat IOC lists for blocklists, per-investigation JSON for correlation, STIX for your TIP, KQL for
Defender/Sentinel, machine-readable feed index at iocs/feed.json.
Covering: Mustang Panda, SilverFox, LofyGang, SERPENTINE#CLOUD, GlassWorm, DPRK Contagious Interview, Cobalt Strike campaigns,
ClearFake, RatonRAT, VENON banker, trojanized developer tools, phishing kits, and more.
MIT licensed. TLP:WHITE. Fork it, integrate it, cite it.
github.com/vuln/breakglas…
English
