A list of freely available tools to assist the regular Security Operations Center (SOC) Analyst
- VirusTotal | https://www.virustotal.com/
- AlienVault OTX | https://otx.alienvault.com/
- IBM X-Force Exchange | https://exchange.xforce.ibmcloud.com/
- Cisco Talos | https://talosintelligence.com/reputation_center/
- Maltiverse | https://maltiverse.com/collection
- GreyNoise | https://www.greynoise.io/
- SANS Internet Storm Center | https://isc.sans.edu/
- Intelligence X | https://intelx.io/
- MetaDefender Cloud | https://metadefender.opswat.com/
- RiskIQ Community Edition | https://community.riskiq.com/home
- Pulsedive | https://pulsedive.com/
- Valhalla YARA Rules | https://valhalla.nextron-systems.com/
- Shodan | https://www.shodan.io/
- IP location | https://www.iplocation.net/
- OSINT Framework | https://osintframework.com/
- Phone Area Codes | https://www.whitepages.com/phone/US
- PhishTank | https://phishtank.org/
- Simple Email Reputation | https://emailrep.io/
- Have I Been Pwned | https://haveibeenpwned.com/
- DeHashed | https://www.dehashed.com/
- ANY.RUN | https://any.run/
- urlscan.io | https://urlscan.io/
- Joe Sandbox Cloud | https://www.joesandbox.com/#windows
- CyberChef | https://gchq.github.io/CyberChef/
- IPVOID | https://www.ipvoid.com/
- Epoch Converter | https://www.epochconverter.com/
- explainshell | https://explainshell.com/
- Machinae | https://github.com/HurricaneLabs/machinae
- Sooty | https://github.com/TheresAFewConors/Sooty
- CVE Details | https://www.cvedetails.com/
- Exploit Database | https://www.exploit-db.com/
- MAC Vendor | https://macvendors.com/
- FileInfo | https://fileinfo.com/
- xCyclopedia | https://strontic.github.io/xcyclopedia/
- The Windows Binary Index | https://winbindex.m417z.com/
- Palo Alto Applipedia | https://applipedia.paloaltonetworks.com/
- Windows Securitiy Logs | https://www.ultimatewindowssecurity.com/securitylog/encyclopedia/