// artifact family

threat intelligence feed forensics

10 browser-only forensics tools in this catalog group — browse by artifact family when you know the kind of evidence you are working with, not the investigation pattern.

tools
10
catalog slugs
10
processing
local · in browser

tools in this family

ordered as in the forensics catalog. every tool runs locally — no upload, no account.

  1. virustotal ioc export forensic analyzerdrop virustotal export · parse hash + detection ratio + tags · runs locally
  2. urlhaus malware url feed forensic analyzerdrop urlhaus feed export · parse url + threat + status · runs locally
  3. phishtank phishing feed forensic analyzerdrop phishtank export · parse url + verification + target · runs locally
  4. abuseipdb report export forensic analyzerdrop abuseipdb export · parse ip + score + category · runs locally
  5. misp event export forensic analyzerdrop misp event export · parse attribute + galaxy + tag · runs locally
  6. openphish feed forensic analyzerdrop openphish feed export · parse url + brand + discovery · runs locally
  7. ioc feed stale indicator detectordrop 2+ ioc feed exports · detect stale/unremoved indicators · runs locally
  8. ioc hash collision anomaly detectordrop ioc feed export · detect conflicting hash classifications · runs locally
  9. multi threat feed timeline correlatordrop 2+ threat feed exports · unified ioc timeline graph · runs locally
  10. cross threat feed incident correlatordrop threat feed + siem exports · correlate ioc to alert hits · runs locally
ready