Sunday, August 23, 2020

Intel Owl - Analyze Files, Domains, IPs In Multiple Ways From A Single API At Scale


Do you want to get threat intelligence data about a file, an IP or a domain?
Do you want to get this kind of data from multiple sources at the same time using a single API request?
You are in the right place!
This application is built to scale out and to speed up the retrieval of threat info.
It can be integrated easily in your stack of security tools to automate common jobs usually performed, for instance, by SOC analysts manually.
Intel Owl is composed of analyzers that can be run to retrieve data from external sources (like VirusTotal or AbuseIPDB) or to generate intel from internal analyzers (like Yara or Oletools)
This solution is for everyone who needs a single point to query for info about a specific file or observable (domain, IP, URL, hash).
Main features:
  • full django-python application
  • easily and completely customizable, both the APIs and the analyzers
  • clone the project, set up the configuration and you are ready to run
  • Official frontend client: IntelOwl-ng provides features such as dashboard, visualizations of analysis data, easy to use forms for requesting new analysis, etc.

Documentation
Documentation about IntelOwl installation, usage, contribution can be found at https://intelowl.readthedocs.io/.

Blog posts
v1.0.0 Announcement
First announcement

Free Internal Modules Available
  • Static Doc Analysis
  • Static RTF Analysis
  • Static PDF Analysis
  • Static PE Analysis
  • Static Generic File Analysis
  • Strings analysis
  • PE Signature verification
Free modules that require additional configuration:
  • Cuckoo (requires at least one working Cuckoo instance)
  • MISP (requires at least one working MISP instance)
  • Yara (Community, Neo23x0, Intezer and McAfee rules are already available. There's the chance to add your own rules)

External Services Available

required paid or trial API key
  • GreyNoise v2

required paid or free API key
  • VirusTotal v2 + v3
  • HybridAnalysis
  • Intezer
  • Farsight DNSDB
  • Hunter.io - Email Hunting
  • ONYPHE
  • Censys.io
  • SecurityTrails

required free API key
  • GoogleSafeBrowsing
  • AbuseIPDB
  • Shodan
  • HoneyDB
  • AlienVault OTX
  • MaxMind
  • Auth0

needed access request
  • CIRCL PassiveDNS + PassiveSSL

without api key
  • Fortiguard URL Analyzer
  • GreyNoise Alpha API v1
  • Talos Reputation
  • Tor Project
  • Robtex
  • Threatminer
  • Abuse.ch MalwareBazaar
  • Abuse.ch URLhaus
  • Team Cymru Malware Hash Registry
  • Tranco Rank
  • Google DoH
  • CloudFlare DoH Classic
  • CloudFlare DoH Malware
  • Classic DNS resolution

Legal notice
You as a user of this project must review, accept and comply with the license terms of each downloaded/installed package listed below. By proceeding with the installation, you are accepting the license terms of each package, and acknowledging that your use of each package will be subject to its respective license terms.
osslsigncode, stringsifter, peepdf, oletools, MaxMind-DB-Reader-python, pysafebrowsing, PyMISP, OTX-Python-SDK, yara-python, GitPython, Yara community rules, Neo23x0 Yara sigs, Intezer Yara sigs, McAfee Yara sigs

Google Summer Of Code
The project was accepted to the GSoC 2020 under the Honeynet Project!!
Stay tuned for upcoming new features developed by Eshaan Bansal (Twitter).

About the author
Feel free to contact the author at any time: Matteo Lodi (Twitter)
We also have a dedicated twitter account for the project: @intel_owl.




via KitPloitContinue reading
  1. Hacking Tools For Windows
  2. Hacker Tools List
  3. Blackhat Hacker Tools
  4. Pentest Tools Linux
  5. Hacker Tools Github
  6. Hacker Tools Github
  7. Pentest Tools List
  8. Hacker Tools Github
  9. Pentest Tools Apk
  10. Hacking Apps
  11. Hacking Tools For Beginners
  12. Hacker Search Tools
  13. Hack Tools 2019
  14. Pentest Tools Tcp Port Scanner
  15. Hack And Tools
  16. Hack Tools For Pc
  17. Hacking Tools 2019
  18. Android Hack Tools Github
  19. Termux Hacking Tools 2019
  20. Hacking Tools
  21. Easy Hack Tools
  22. Hacker Tools Hardware
  23. Hack Tools Online
  24. Hack Tools For Ubuntu
  25. Termux Hacking Tools 2019
  26. Pentest Tools Framework
  27. Usb Pentest Tools
  28. Hacking Tools For Pc
  29. Pentest Tools Free
  30. Nsa Hack Tools
  31. Hacking Tools Software
  32. Hack Tools For Windows
  33. Pentest Tools Alternative
  34. Blackhat Hacker Tools
  35. Hacker Tools Windows
  36. Computer Hacker
  37. New Hack Tools
  38. Hack Tools
  39. Hacker Tools 2020
  40. Top Pentest Tools
  41. Hacker Tools Hardware
  42. Black Hat Hacker Tools
  43. Hacking App
  44. Hacking Tools Usb
  45. Hacking Tools Windows 10
  46. Underground Hacker Sites
  47. Underground Hacker Sites
  48. Hacking Tools Windows
  49. Hacking Tools Mac
  50. Pentest Tools Website
  51. Hacker Tools For Mac
  52. Hak5 Tools
  53. Pentest Tools Tcp Port Scanner
  54. Pentest Tools Github
  55. Underground Hacker Sites
  56. Hacker Tools For Ios
  57. Hacking Tools Usb
  58. Hacking Tools 2019
  59. Hack Tools
  60. Hacking Tools Mac
  61. Pentest Tools Github
  62. Hack Tools Pc
  63. Install Pentest Tools Ubuntu
  64. Hacker
  65. Easy Hack Tools
  66. Easy Hack Tools
  67. Best Hacking Tools 2020
  68. Pentest Tools For Ubuntu
  69. Hacker Tools Mac
  70. Pentest Tools Free
  71. Hacker Tools Free Download
  72. Hacker Tools Linux
  73. Hack Tools
  74. Hack Tools For Pc
  75. Hacking Tools For Games
  76. Hacking Tools For Windows Free Download
  77. Best Pentesting Tools 2018
  78. Pentest Tools Port Scanner
  79. Pentest Tools For Windows
  80. Hacking Tools Free Download
  81. Pentest Tools Url Fuzzer
  82. Hacking Tools Name
  83. Hacking Tools Mac
  84. Hacker Tools Windows
  85. Hacking Tools Windows
  86. Beginner Hacker Tools
  87. Hacking Tools Windows
  88. Hacker Tools
  89. Pentest Tools Port Scanner
  90. Hacker Tools List
  91. Hacking Tools
  92. Pentest Tools Download
  93. Hack Tools For Windows
  94. Hack Tools Download
  95. Hack Tools
  96. Hacker Hardware Tools
  97. Hacking Tools Kit
  98. Pentest Tools Download
  99. Growth Hacker Tools
  100. Hack Tools 2019
  101. Best Hacking Tools 2020
  102. Hacker Tools Free
  103. Pentest Tools For Ubuntu
  104. Pentest Tools Online
  105. Free Pentest Tools For Windows
  106. Hack Tools
  107. Pentest Tools Port Scanner
  108. Hacking Tools And Software
  109. Hacking Tools Download
  110. Kik Hack Tools
  111. Hacking Tools For Windows 7
  112. Pentest Tools Open Source
  113. Hacking Tools
  114. Hacking App
  115. Pentest Tools Website
  116. Hacker Search Tools
  117. Hacking Tools Free Download
  118. Pentest Tools Framework
  119. Hack Tools For Windows
  120. Hacking Tools Windows
  121. Pentest Tools Linux
  122. Pentest Tools Subdomain
  123. Hack Tools
  124. Pentest Tools Review
  125. Hacking Tools Github
  126. How To Install Pentest Tools In Ubuntu
  127. Hacker Tools 2020
  128. Hack Tools For Mac
  129. What Are Hacking Tools
  130. Install Pentest Tools Ubuntu
  131. Android Hack Tools Github
  132. Pentest Tools Subdomain
  133. Hacking App
  134. Hack And Tools
  135. Hack App
  136. What Is Hacking Tools
  137. Hak5 Tools
  138. Pentest Tools Apk
  139. Hacker Tools List
  140. Beginner Hacker Tools
  141. Kik Hack Tools
  142. Pentest Tools For Windows
  143. Tools Used For Hacking
  144. Hacking Tools Github
  145. Hacker Tools For Mac
  146. Hacker Tools Online
  147. How To Make Hacking Tools
  148. Hacker
  149. Hacker Tools Free Download
  150. Hacker Tools Windows
  151. Hacking Tools For Pc
  152. Hack Tools Pc
  153. Hacking Apps
  154. Pentest Recon Tools
  155. Beginner Hacker Tools
  156. Pentest Tools Android
  157. Pentest Tools Apk
  158. Hackrf Tools
  159. Hacking App
  160. Pentest Tools Nmap
  161. Hacker Search Tools
  162. Hack Tools Download

No comments:

Post a Comment