360netlab / DGALinks
Suspicious DGA from PDNS and Sandbox.
☆185Updated 2 years ago
Alternatives and similar repositories for DGA
Users that are interested in DGA are comparing it to the libraries listed below
Sorting:
- ☆269Updated 6 years ago
- The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research th…☆219Updated 7 years ago
- A collection of known Domain Generation Algorithms☆66Updated 9 years ago
- DGA Domains detection☆66Updated 7 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆104Updated 3 years ago
- Sample DGA classifier☆125Updated 9 years ago
- idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)☆282Updated last year
- Explore Indicators of Compromise Automatically☆94Updated 5 years ago
- Malware Sinkhole List in various formats☆103Updated 2 years ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆480Updated last month
- passivedns-client provides a library and a query tool for querying several passive DNS providers☆201Updated 3 years ago
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆202Updated 3 years ago
- dns tunnel dectect with CNN☆63Updated 5 years ago
- Extract files from network traffic with Zeek.☆101Updated 5 years ago
- Passive DNS collection using Zeek☆182Updated 2 years ago
- ☆306Updated 8 years ago
- DGA Domain Detection using Bigram Frequency Analysis☆54Updated 7 years ago
- Some results of my DGA reversing efforts☆671Updated 2 months ago
- ☆172Updated 3 years ago
- Anomaly detection based on DNS traffic analysis☆53Updated 4 years ago
- Pull some Malware samples here for other security researchers/malware analyst's to analyze and play with.☆174Updated last year
- A high interaction SSH honeypot☆125Updated 2 years ago
- Rule sets for Sagan☆104Updated 4 years ago
- a network packet capture compiler☆200Updated 3 years ago
- The python client of passivedns.cn☆97Updated 6 years ago
- This repository contains all public indicators identified by 401trg during the course of our investigations. It also includes relevant ya…☆122Updated 4 years ago
- Zeek IDS Dockerfile☆101Updated 2 years ago
- ☆54Updated 11 months ago
- Suricata rules for the new critical vulnerabilities☆82Updated 4 years ago
- Automatic Yara Rule Generation☆332Updated 9 years ago