01AI-Powered Analysis: Natural language interface for queries, intelligent IOC detection, and advanced APT attribution with MITRE ATT&CK mapping.
02Multi-Source Intelligence: Integrates with VirusTotal, AlienVault OTX, AbuseIPDB, and IPinfo for comprehensive data.
03Rich Reporting & Visualization: Generates interactive HTML reports with D3.js network graphs and supports multiple output formats (Markdown, JSON, HTML, STIX).
04Flexible Deployment Options: Available as an MCP server for AI integration, standalone CLI, Docker container, or Python package.
05Production-Ready Features: Includes multi-architecture Docker support, Kubernetes readiness, comprehensive testing, and performance optimizations like async processing and intelligent caching.
067 GitHub stars