FrankHassanabad / suricata-sample-data
Repository of creating different example suricata data sets
☆32Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for suricata-sample-data
- A completely automated anomaly detector Zeek network flows files (conn.log).☆74Updated 3 months ago
- DGA Detection with ML and DL☆47Updated 5 years ago
- A python app to predict Att&ck tactics and techniques from cyber threat reports☆116Updated last year
- [TDSC 2021] IntruSion alert-driven Attack Graph Extractor. https://ieeexplore.ieee.org/document/9557854☆33Updated 4 months ago
- AttacKG: Constructing Knowledge-enhanced Attack Graphs from Cyber Threat Intelligence Reports☆137Updated last year
- "Linking Threat Tactics, Techniques, and Patterns with Defensive Weaknesses, Vulnerabilities and Affected Platform Configurations for Cyb…☆87Updated 4 months ago
- A logic-based enterprise network security analyzer☆110Updated last year
- Pcap-splitter allows you to split a pcap file into subsets of pcap files based on sessions, flows, ip addresses, number of bytes, number …☆65Updated 5 years ago
- A Zeek script to generate features based on timing, volume and metadata for traffic classification.☆53Updated 4 years ago
- Extracting Attack Behavior from Threat Reports☆75Updated last year
- zeek-scripts☆41Updated 5 years ago
- ☆96Updated 4 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆98Updated 3 years ago
- CTI database generator and public dataset☆21Updated 4 years ago
- SecureBERT is a domain-specific language model to represent cybersecurity textual data.☆71Updated 4 months ago
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆20Updated last year
- ☆19Updated 3 years ago
- Anomaly detection based on DNS traffic analysis☆51Updated 4 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 2 months ago
- ☆73Updated last year
- Mapping NSM rules to MITRE ATT&CK☆68Updated 4 years ago
- Suspicious DGA from PDNS and Sandbox.☆182Updated 2 years ago
- Leveraging machine learning to detect TLS based malware in encrypted traffic without decryption☆39Updated 4 years ago
- pretrained BERT model for cyber security text, learned CyberSecurity Knowledge☆158Updated last year
- The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research th…☆219Updated 7 years ago
- A library and command line tool for extracting indicators of compromise (IOCs) from security reports in PDF, HTML, Word, or text format☆27Updated last month
- OpenWRT Suricata package☆44Updated 6 years ago
- The project is to detect malware traffic in TLS flows using ML☆32Updated 4 years ago
- A framework for the Analysis of Intrusion Detection Alerts☆16Updated 3 years ago
- nPrint provides a generalizable data representation for network packets that works directly with machine learning techniques☆103Updated 2 years ago