# aptnotes/data

APTnotes data

Repository: https://github.com/aptnotes/data
Canonical: https://ross.abutalabs.com/products/aptnotes-data
License Family: other
Topics: apt, malware, analysis
Last push: 2024-12-16T15:15:17+00:00

## Health v2 (maintenance only)
Score: 32/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 35, longevity 100
- inputs: {"age_days": 3806, "days_push": 625, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1809, forks 294 (observed 2026-08-28T04:05:39.433120+00:00)

## What it is
APTnotes data is a curated dataset of publicly available papers and blogs about APT (Advanced Persistent Threat) campaigns and toolsets, indexed in CSV and JSON summary files with links to reports hosted on Box. It preserves threat intelligence reports that vendors often take down, sorted by year.

## Use cases
- download a corpus of APT research reports for threat intelligence analysis
- find papers about specific APT groups by year
- build a searchable dataset of malware campaign reports
- research historical advanced persistent threat activity
- archive vendor threat reports before they get taken down
- feed APT report metadata into a threat intelligence tool

## When to choose
- you need a comprehensive, chronologically organized index of public APT research reports
- you are doing DFIR or threat intelligence research and want primary source documents
- you want structured CSV/JSON metadata (SHA-1 hashes, sources, links) for bulk downloading reports

## When to avoid
- you need real-time or continuously updated threat intelligence feeds
- you want the actual malware samples rather than analysis reports
- you need a tool or library rather than a static dataset

## Facets
- artifact type: dataset
- maturity: maintenance
- function: security, osint, pdf, data-science
- domain: security, osint
- platform: cross-platform
- tags: apt, threat-intelligence, malware-analysis, dfir, research-papers, csv, cybersecurity-research

## Member repositories
- aptnotes/data (main) score 32

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:39.433120+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:21:19.393389+00:00, confidence not recorded.
  - readme: https://github.com/aptnotes/data (fetched 2026-08-28T04:05:39.433120+00:00, sha e77b0c2f4865)
- Data as of 2026-08-30T08:39:29.467469+00:00.
