360netlab / DGALinks
Suspicious DGA from PDNS and Sandbox.
☆187Updated 3 years ago
Alternatives and similar repositories for DGA
Users that are interested in DGA are comparing it to the libraries listed below
Sorting:
- ☆269Updated 7 years ago
- The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research th…☆221Updated 8 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆107Updated 4 years ago
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆203Updated 3 years ago
- Explore Indicators of Compromise Automatically☆97Updated 5 years ago
- A collection of known Domain Generation Algorithms☆67Updated 9 years ago
- idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)☆282Updated 3 months ago
- Sample DGA classifier☆128Updated 10 years ago
- DGA Domains detection☆69Updated 7 years ago
- Rule sets for Sagan☆105Updated 4 years ago
- Anomaly detection based on DNS traffic analysis☆54Updated 5 years ago
- Pull some Malware samples here for other security researchers/malware analyst's to analyze and play with.☆173Updated last year
- dns tunnel dectect with CNN☆63Updated 5 years ago
- Some results of my DGA reversing efforts☆677Updated last month
- Extract files from network traffic with Zeek.☆103Updated 5 years ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆501Updated last month
- ☆306Updated 8 years ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆79Updated 7 years ago
- The pattern matching swiss knife☆140Updated 5 years ago
- security machine learning☆72Updated 8 years ago
- ☆58Updated last year
- 威胁情报,恶意样本分析,开源Malware代码收集☆346Updated 5 years ago
- Passive DNS collection using Zeek☆181Updated 2 years ago
- A high interaction SSH honeypot☆124Updated 2 years ago
- A Python RESTful API framework for online malware analysis and threat intelligence services.☆367Updated last year
- ☆33Updated 7 years ago
- Malware Sinkhole List in various formats☆102Updated 3 years ago
- a network packet capture compiler☆202Updated 3 years ago
- Cuckoo Sandbox Dockerfile☆331Updated 5 years ago
- The python client of passivedns.cn☆97Updated 6 years ago