Karasu

DFIRThreat IntelligenceMISP

Parse and extract actionable threat intelligence from blog posts for easy MISP ingestion.

Overview

Karasu automates the extraction of threat intelligence from unstructured blog post content. By leveraging AI, it identifies and structures indicators of compromise (IOCs), TTPs, and other relevant artefacts, preparing them for direct ingestion into a MISP instance.

Key capabilities

  • Scrapes and parses threat intelligence blog posts
  • AI-driven extraction of IOCs, TTPs, and artefacts
  • Structures extracted data for MISP-compatible ingestion
  • Reduces manual effort in threat intelligence curation

Source

github.com/Sorakurai/karasu