bobby-tablez/TTP-Threat-Feeds

Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨

53
/ 100
Established

This tool automates the process of extracting critical threat intelligence from published security research. It takes a list of URLs from trusted threat intelligence blogs and, using AI, extracts adversary behaviors (TTPs), malware details, and indicators of compromise (IOCs). The output is structured, human-readable YAML files that help detection engineers and threat researchers quickly identify new detection opportunities.

Use this if you are a detection engineer or threat researcher who needs to quickly parse and structure the latest adversarial TTPs and IOCs from security blogs for building new detections.

Not ideal if you need a fully automated, canonical source of truth for direct ingestion into security systems without human verification, as LLM outputs can be imperfect.

threat intelligence detection engineering security research cybersecurity analysis incident response
No Package No Dependents
Maintenance 10 / 25
Adoption 9 / 25
Maturity 15 / 25
Community 19 / 25

How are scores calculated?

Stars

70

Forks

17

Language

Python

License

MIT

Last pushed

Mar 09, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/llm-tools/bobby-tablez/TTP-Threat-Feeds"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.