360netlab / DGA
Suspicious DGA from PDNS and Sandbox.
☆183Updated 2 years ago
Alternatives and similar repositories for DGA:
Users that are interested in DGA are comparing it to the libraries listed below
- The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research th…☆218Updated 7 years ago
- ☆268Updated 6 years ago
- A collection of known Domain Generation Algorithms☆66Updated 8 years ago
- DGA Domains detection☆63Updated 6 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆100Updated 3 years ago
- Sample DGA classifier☆124Updated 9 years ago
- Anomaly detection based on DNS traffic analysis☆51Updated 4 years ago
- Pull some Malware samples here for other security researchers/malware analyst's to analyze and play with.☆174Updated 8 months ago
- Explore Indicators of Compromise Automatically☆94Updated 4 years ago
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆201Updated 2 years ago
- Extract files from network traffic with Zeek.☆100Updated 4 years ago
- dns tunnel dectect with CNN☆62Updated 5 years ago
- Some results of my DGA reversing efforts☆655Updated 5 months ago
- idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)☆281Updated last year
- Malware Sinkhole List in various formats☆102Updated 2 years ago
- Automatic Yara Rule Generation☆331Updated 9 years ago
- DGA Domain Detection using Bigram Frequency Analysis☆54Updated 7 years ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆470Updated last month
- Rule sets for Sagan☆102Updated 4 years ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆74Updated 7 years ago
- Mapping NSM rules to MITRE ATT&CK☆69Updated 4 years ago
- Passive DNS collection using Zeek☆182Updated last year
- Passive Real-time Asset Detection System☆233Updated 8 months ago
- a network packet capture compiler☆197Updated 2 years ago
- The python client of passivedns.cn☆98Updated 6 years ago
- This is an open source Snort rules repository☆30Updated 2 years ago
- ☆169Updated 3 years ago
- ☆308Updated 7 years ago
- Zeek IDS Dockerfile☆100Updated 2 years ago
- DGA Detection with ML and DL☆47Updated 5 years ago