HASecuritySolutions / flare
An analytical framework for network traffic and behavioral analytics
☆22Updated 2 years ago
Alternatives and similar repositories for flare:
Users that are interested in flare are comparing it to the libraries listed below
- Snapshot, patch, health-check, and potentially roll-back Windows VMs☆34Updated 7 years ago
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆32Updated 2 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated 6 months ago
- Web interface for monitoring and interacting with Netflow data stored in Silk repositories.☆13Updated 6 years ago
- ☆30Updated 6 years ago
- ☆12Updated 5 years ago
- incident response scripts☆19Updated 6 years ago
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆53Updated 2 years ago
- ☆21Updated 2 years ago
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 4 years ago
- Tool used to perform threat intelligence against packet data☆35Updated 3 months ago
- ☆16Updated 4 years ago
- Generate a histogram of TCP and UDP payload bytes from a pcap file☆24Updated 2 years ago
- Incident Response Playbooks☆14Updated 5 years ago
- MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, i…☆23Updated 3 years ago
- Wrap any binary into a cached webserver☆53Updated 3 years ago
- Use DNS to hunt for threats including DGAs☆15Updated 9 years ago
- Sharing Threat Hunting runbooks☆25Updated 5 years ago
- ☆11Updated 4 years ago
- Incident Response Network Tools☆24Updated 3 years ago
- A few scripts I put together for testing purposes and to automate a few capabilities while doing IR. These scripts are also part of my bl…☆54Updated 7 years ago
- Defence Against the Dark Arts☆34Updated 5 years ago
- Git for me to put all my forensics stuff☆21Updated 3 months ago
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis☆27Updated 5 months ago
- Easy way to create a MISP event related to a Phishing page☆17Updated last year
- ☆54Updated 3 years ago
- FIles and guides related to using Elasticstack as a SIEM☆12Updated 4 years ago
- PowerShell Memory Pulling script☆19Updated 10 years ago
- Docker Container to deploy Mitre Caldera Automated Adversary Emulation System☆26Updated 4 years ago