DShield-ISC / dshieldLinks
DShield Raspberry Pi Sensor
☆494Updated this week
Alternatives and similar repositories for dshield
Users that are interested in dshield are comparing it to the libraries listed below
Sorting:
- CLI tool to manage a SIFT Install☆420Updated 2 years ago
- Useful network monitoring, analysis, and active response tools used or mentioned in the SANS SEC503 course (https://www.sans.org/course/i…☆241Updated 10 months ago
- Passive service locator, a python sniffer that identifies servers, clients, names and much more☆254Updated 2 years ago
- Zeek Log Cheatsheets☆297Updated 2 months ago
- This is a repository for freq.py and freq_server.py☆211Updated 5 years ago
- ☆201Updated 4 years ago
- Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana☆299Updated last week
- Simple Bash IOC Scanner☆765Updated 3 years ago
- MISP Docker (XME edition)☆283Updated last year
- ☆222Updated last year
- Main MineMeld documentation repo☆379Updated 8 years ago
- SIFT☆519Updated last year
- Evolving directions on building the best Open Source Forensics VM☆161Updated 7 years ago
- Documentation of TheHive☆400Updated 2 years ago
- Incident Response Hierarchy of Needs☆465Updated 2 years ago
- Dashboard for conducting Backdoors and Breaches sessions over Zoom.☆116Updated last year
- Tools, techniques, cheat sheets, and other resources to assist those defending organizations and detecting adversaries☆456Updated 3 years ago
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆503Updated 3 years ago
- User guide of MISP☆280Updated 10 months ago
- Search a filesystem for indicators of compromise (IoC).☆81Updated 2 weeks ago
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆128Updated 3 years ago
- Splunk Boss of the SOC version 2 dataset.☆403Updated 3 years ago
- Configuration files for the SOF-ELK VM☆1,690Updated last week
- Documentation of Cortex☆175Updated 2 years ago
- Web application to create indexes for GIAC certification examinations.☆146Updated 2 years ago
- ☆234Updated 5 years ago
- CyLR - Live Response Collection Tool☆693Updated 3 years ago
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆436Updated this week
- Automated deployment scripts for the RockNSM network hunting distribution.☆455Updated 2 years ago
- Python API Client for TheHive☆232Updated this week