360netlab / DGA
Suspicious DGA from PDNS and Sandbox.
☆183Updated 2 years ago
Alternatives and similar repositories for DGA:
Users that are interested in DGA are comparing it to the libraries listed below
- A collection of known Domain Generation Algorithms☆66Updated 8 years ago
- The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research th…☆218Updated 7 years ago
- ☆268Updated 6 years ago
- DGA Domains detection☆62Updated 6 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆99Updated 3 years ago
- Explore Indicators of Compromise Automatically☆94Updated 4 years ago
- Extract files from network traffic with Zeek.☆99Updated 4 years ago
- Sample DGA classifier☆124Updated 9 years ago
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆201Updated 2 years ago
- Pull some Malware samples here for other security researchers/malware analyst's to analyze and play with.☆174Updated 7 months ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆464Updated last week
- DGA Domain Detection using Bigram Frequency Analysis☆53Updated 7 years ago
- Malware Sinkhole List in various formats☆102Updated 2 years ago
- Some results of my DGA reversing efforts☆650Updated 4 months ago
- idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)☆281Updated last year
- passivedns-client provides a library and a query tool for querying several passive DNS providers☆199Updated 3 years ago
- Anomaly detection based on DNS traffic analysis☆51Updated 4 years ago
- ☆309Updated 7 years ago
- Rule sets for Sagan☆102Updated 4 years ago
- The Multiplatform Linux Sandbox☆261Updated 3 years ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆73Updated 7 years ago
- Automatic Yara Rule Generation☆331Updated 8 years ago
- dns tunnel dectect with CNN☆62Updated 5 years ago
- ☆167Updated 3 years ago
- This repository contains all public indicators identified by 401trg during the course of our investigations. It also includes relevant ya…☆121Updated 3 years ago
- a network packet capture compiler☆196Updated 2 years ago
- Passive DNS collection using Zeek☆181Updated last year
- Sweet, sweet, secrepo.com html.☆131Updated 3 years ago
- ☆37Updated 9 years ago