CIRCL / potiron
Potiron - Normalize, Index and Visualize Network Capture
☆85Updated 6 years ago
Alternatives and similar repositories for potiron
Users that are interested in potiron are comparing it to the libraries listed below
Sorting:
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆48Updated 2 years ago
- Specifications used in the MISP project including MISP core format☆51Updated 4 months ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- Build Automated Machine Images for MISP☆28Updated last year
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆29Updated 2 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- Malware Classifier From Network Captures☆82Updated 8 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- Passive Network Audit Framework☆32Updated 6 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆38Updated 7 months ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Feed for verious malicious IPs such as malware and botnets☆12Updated 8 years ago
- A script to track malware IOCs with OSINT on Twitter.☆53Updated last year
- CyCAT.org taxonomies☆15Updated 3 years ago
- A set of templates for documenting threat intelligence☆74Updated 12 years ago
- Python bindings for Yeti's API☆18Updated last year
- Find Unicode (including Internationalized) domain squats. https://xntwist.hightower.space/☆22Updated 2 years ago
- ☆15Updated 7 years ago
- This repository is a curated list of pro bono incident response entities.☆20Updated last year
- ☆33Updated 3 years ago
- A tool to convert MISP XML files (events and attributes) into graphs☆20Updated 8 years ago
- Analysis Correlation Engine☆26Updated 5 years ago
- A RESTful API frontend for Stenographer☆54Updated 2 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 5 years ago
- scan-detection policies for bro☆16Updated 3 months ago