This is your work, valued
The goal is to share knowledge and receive feedback. If anything can be improved upon, and I suspect it can, let me know. Appreciated.
Shodan_Pull_Cobalt_Strike_Team_Servers. This code will pull Cobalt Strike Team Servers and Metasploit Servers from Shodan's API using various criteria.
4NxLog_XML_Configuration. These event viewer logs are worth monitoring for suspicious behavior
2Pull_OTX_AlienVault_Pulses_IOCs. This will pull OTX AlienVault pulses. You can modify how far back you want to go with the days_to_go_back variable
1Cisco_Umbrella_DNS. This will delete and create a new blocklist. Then upload domains/hostnames to that blocklist.
1