HolmesProcessing / Holmes-Gateway
Main program for receiving tasking and objects. It validates input, checks authentication, and pushes the requests to the pipeline.
☆13Updated 7 years ago
Alternatives and similar repositories for Holmes-Gateway
Users that are interested in Holmes-Gateway are comparing it to the libraries listed below
Sorting:
- The Storage Planner manages access to all data within the Holmes Processing system. It orchestrates the interaction across multiple Datab…☆16Updated 6 years ago
- Investigation Planner for long running analysis with unpredictable execution time. For example, dynamic analysis.☆15Updated 8 years ago
- website☆9Updated 4 years ago
- Investigation Planner for fast running analysis with predictable execution time. For example, static analysis.☆29Updated 5 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- threat language parser☆60Updated 10 years ago
- Sweet, sweet, secrepo.com html.☆131Updated 3 years ago
- DGA Domains detection☆66Updated 7 years ago
- Indicator Extractor☆139Updated 6 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 7 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated 3 weeks ago
- Tool to extract indicators of compromise from security reports in PDF format☆34Updated 9 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆175Updated 4 years ago
- Generate STIX XML from OpenIOC XML☆92Updated 6 years ago
- A project to label the VirusShare malware corpus using VirusTotal's public API.☆30Updated 2 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated last year
- DNSDB query scripts☆75Updated 5 years ago
- OASIS TC Open Repository: Match STIX content against STIX patterns☆44Updated 2 years ago
- AMICO - Accurate Behavior-Based Detection of Malware Downloads☆31Updated 7 years ago
- ARCHIVED ce1sus, a threat information database ARCHIVED☆28Updated 9 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Threatelligence is a simple cyber threat intelligence feed collector, using Elasticsearch, Kibana and Python to automatically collect int…☆148Updated 10 years ago
- Parse a report and import the events into MISP☆29Updated 9 years ago
- YALIH (Yet Another Low Interaction Honeyclient) is a low Interaction Client honeypot designed to detect malicious websites through signat…☆68Updated 5 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- (Unofficial) Python API for https://malwr.com/☆62Updated 8 years ago
- A framework for receiving and redistributing abuse feeds☆124Updated 5 years ago
- CuckooML: Machine Learning for Cuckoo Sandbox☆145Updated 2 years ago
- It's like a polaroid, but for domains☆24Updated 10 years ago