B0fH / yara-suricata
A Yara Lua output script for Suricata
☆19Updated 6 years ago
Alternatives and similar repositories for yara-suricata:
Users that are interested in yara-suricata are comparing it to the libraries listed below
- Tweettioc Splunk App☆20Updated 4 years ago
- Look into EDR events from network☆23Updated 11 months ago
- Suricata rule and intel index☆30Updated 2 weeks ago
- Old home of LimaCharlie, open source EDR☆30Updated last year
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 5 years ago
- Threat Mapping Catalogue☆17Updated 3 years ago
- Tracking APT IOCs☆25Updated 4 years ago
- Analytics for Accounting logs from Network devices☆17Updated 4 years ago
- ☆39Updated 2 years ago
- C# User Simulation☆32Updated 2 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Updated 3 years ago
- Suricata rules to detect Winnti communication☆14Updated 7 years ago
- THOR MITRE ATT&CK Framework Coverage☆24Updated 4 years ago
- Cybersecurity Incidents Mind Maps☆33Updated 3 years ago
- ☆41Updated last year
- ☆44Updated last year
- Bro integration with osquery☆15Updated 2 years ago
- ☆12Updated 3 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆13Updated 5 years ago
- ☆34Updated 2 years ago
- Searches open files shares for password files, database backups, etc. Extend as you see fit☆29Updated 5 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Globally distributed honeypots and HoneyNets IOCs and file reversing☆16Updated 11 months ago
- BloodHound Cypher Queries Ported to a Jupyter Notebook☆53Updated 4 years ago
- Python script to parse Keytab files for macOS or *nix (typically /etc/krb5.keytab)☆35Updated 5 years ago
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆34Updated 3 years ago
- DFIR notes for Citrix ADC (NetScaler) appliances vulnerable to CVE-2019-19781☆45Updated 5 years ago