threatpivot is a Python CLI tool for threat intelligence that aggregates data from multiple sources to enrich Indicators of Compromise (IOCs). It requires no Docker or server setup — simply install via pip and run. It is built for SOC, DFIR, and CTI professionals.
In the Developer Tools space, threatpivot takes a focused approach. Quickly enriching and pivoting on Indicators of Compromise without complex infrastructure. It is built as an open-source project for threat intelligence analysts. threatpivot is open source under the MIT license. It runs on the command line.
It is developed by H3NRYBAIT, and the product first shipped in 2026. Development happens publicly on GitHub with 1 commits in the last 90 days. Key capabilities include IOC Enrichment, Threat Intelligence, and Multi-source Pivoting.
Latest indexed changes and source events
Other apps tracked under the same category.