Skip to content

Unit 42 @ Palo Alto Networks

🚨 Migration News

A significant quantity of our newer intelligence and research, including Timely Threat Intel work, is available at the main Palo Alto Networks organization. As a result of this, anything not active here has been archived.

🏛️ About Unit 42

Unit 42 brings together world-renowned threat researchers, incident responders and security consultants to create an intelligence-driven, response-ready organization that's passionate about helping you proactively manage cyber risk. Our team serves as your trusted advisor to help assess and test your security controls, transform your security strategy with a threat-informed approach and respond to incidents in record time.

This GitHub organization serves as a central hub for the open-source tools, indicators of compromise (IOCs), and other data related to our research and publications.

📊 How our Data is Published

Our repositories contain a wealth of data, primarily in the form of Indicators of Compromise (IOCs). These are typically provided in .csv or .json formats. We strive to adhere to industry best practices and standards, such as STIX/TAXII, where applicable. Some data is not as structured due to urgency.

📞 Contact Us

Pinned Loading

  1. tweets tweets Public archive

    130 21

  2. Blog-Data Blog-Data Public archive

    Files and other data supporting Unit 42 blogs from Palo Alto Networks

  3. dotnetfile dotnetfile Public

    Python 118 17

Repositories

Showing 10 of 20 repositories
  • dotnetfile Public
    pan-unit42/dotnetfile’s past year of commit activity
    Python 118 MIT 17 0 0 Updated Feb 13, 2026
  • .github Public
    pan-unit42/.github’s past year of commit activity
    0 0 0 0 Updated Oct 13, 2025
  • iocs Public archive

    Indicators from Unit 42 Public Reports

    pan-unit42/iocs’s past year of commit activity
    PHP 726 MIT 151 1 4 Updated Aug 17, 2025
  • playbook_viewer Public archive
    pan-unit42/playbook_viewer’s past year of commit activity
    CSS 176 MIT 45 2 0 Updated Jun 25, 2024
  • tweets Public archive
    pan-unit42/tweets’s past year of commit activity
    130 21 0 2 Updated Jan 29, 2024
  • Wireshark-quizzes Public archive

    Packet captures of malicious traffic for analysis using Wireshark

    pan-unit42/Wireshark-quizzes’s past year of commit activity
    63 15 1 0 Updated Jul 10, 2023
  • wireshark-tutorial-IcedID Public archive
    pan-unit42/wireshark-tutorial-IcedID’s past year of commit activity
    5 2 0 0 Updated Nov 23, 2022
  • public_tools Public archive
    pan-unit42/public_tools’s past year of commit activity
    Python 715 MIT 189 5 1 Updated Oct 28, 2022
  • wireshark-workshop Public archive

    pcaps of traffic for traffic analysis workshop

    pan-unit42/wireshark-workshop’s past year of commit activity
    95 30 0 0 Updated Oct 3, 2021
  • MISP Public archive Forked from MISP/MISP

    MISP (core software) - Open Source Threat Intelligence and Sharing Platform (formely known as Malware Information Sharing Platform)

    pan-unit42/MISP’s past year of commit activity
    PHP 8 AGPL-3.0 1,625 0 0 Updated May 4, 2021

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…