CIRCL / potiron
Potiron - Normalize, Index and Visualize Network Capture
☆85Updated 6 years ago
Alternatives and similar repositories for potiron:
Users that are interested in potiron are comparing it to the libraries listed below
- Specifications used in the MISP project including MISP core format☆51Updated 2 months ago
- Build Automated Machine Images for MISP☆28Updated last year
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- Traceroute improved wrapper for CSIRT and CERT operators☆37Updated 5 months ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- ☆15Updated 7 years ago
- A tool designed for consistent and safe capture of off network web resources.☆37Updated 8 years ago
- Using osquery for Mass Incident Detection & Response☆19Updated 8 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- Cli interface to threatcrowd.org☆19Updated 7 years ago
- Passive Network Audit Framework☆32Updated 6 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 9 years ago
- first commit☆20Updated last year
- ☆12Updated 5 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 7 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 5 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- This repository is a curated list of pro bono incident response entities.☆20Updated last year
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Malware Classifier From Network Captures☆82Updated 8 years ago
- A set of templates for documenting threat intelligence☆74Updated 12 years ago
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆29Updated 2 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- A Python implementation of the Community ID flow hashing standard☆23Updated last year