Cisco-Talos / Re2Pcap
☆54Updated 10 months ago
Alternatives and similar repositories for Re2Pcap:
Users that are interested in Re2Pcap are comparing it to the libraries listed below
- A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会☆164Updated 5 years ago
- Explore Indicators of Compromise Automatically☆94Updated 5 years ago
- The python client of passivedns.cn☆98Updated 6 years ago
- IDS Bypass tricks☆122Updated 6 years ago
- ☆37Updated last year
- ThreatHound is a threat intelligence query tool use for detecting potentially malicious IP or domains. It combines the MISP open source t…☆39Updated 5 years ago
- nmap service and application version detection (without nmap installation)☆113Updated 7 years ago
- CVE2020-0796 SMBv3 RCE☆61Updated 5 years ago
- suricata IDS的规则,测试在用的,部分自写的规则视情况放出。☆18Updated 6 years ago
- Suricata rules for the new critical vulnerabilities☆82Updated 4 years ago
- tcppc: A simple honeypot to capture TCP/TLS/UDP payloads on ALL ports.☆35Updated 4 years ago
- ☆30Updated 2 years ago
- This tool was written as PoC to article https://waf.ninja/libinjection-fuzz-to-bypass/☆38Updated 7 years ago
- ☆45Updated 3 years ago
- 天御攻防实验室 - 威胁猎杀实战系列☆102Updated 5 years ago
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆174Updated 8 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆102Updated 3 years ago
- 《横向移动攻击与检测技术》专栏文章☆17Updated 5 years ago
- Historical list of {Cobalt Strike,NanoHTTPD} servers☆121Updated 6 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆209Updated 6 years ago
- Tool for tunnel (Version 2)☆187Updated 3 years ago
- Citrix ADC Remote Code Execution☆83Updated 5 years ago
- 恶意脚本检测分类工具☆40Updated 4 years ago
- This is an open source Snort rules repository☆30Updated 2 years ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆31Updated 5 years ago
- 威胁检测规则集☆15Updated 5 years ago
- Pulse Secure SSL VPN pre-auth file reading☆50Updated 5 years ago
- ☆33Updated 10 years ago
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆201Updated 3 years ago
- ☆11Updated 6 years ago