HolmesProcessing / Holmes-StorageLinks
The Storage Planner manages access to all data within the Holmes Processing system. It orchestrates the interaction across multiple Databases, serves the files for analysis, etc.
☆16Updated 6 years ago
Alternatives and similar repositories for Holmes-Storage
Users that are interested in Holmes-Storage are comparing it to the libraries listed below
Sorting:
- Main program for receiving tasking and objects. It validates input, checks authentication, and pushes the requests to the pipeline.☆14Updated 8 years ago
- Investigation Planner for long running analysis with unpredictable execution time. For example, dynamic analysis.☆16Updated 8 years ago
- Investigation Planner for fast running analysis with predictable execution time. For example, static analysis.☆28Updated 6 years ago
- Set of scripts to index PCAP files and retrieve packets☆14Updated 10 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 8 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 9 years ago
- A highly efficient Bloom filter library and command line tool written in Go.☆77Updated 3 years ago
- ssdeep based clustering tool☆14Updated 9 years ago
- ☆30Updated 7 years ago
- ☆12Updated 8 years ago
- threat language parser☆60Updated 10 years ago
- Scripts to process big chunks of data from MISP and do in depth correlations on samples.☆12Updated 9 years ago
- Workbench: A scalable python framework for security research and development teams.☆92Updated 6 years ago
- Proof-of-concept automated baremetal malware analysis framework.☆14Updated 10 years ago
- Packetpig - Open Source Big Data Security Analytics☆298Updated 7 years ago
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆29Updated 3 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆35Updated 9 years ago
- ☆29Updated 9 years ago
- Malware Classifier From Network Captures☆82Updated 8 years ago
- A tool to extract structured cyber information from incident reports.☆82Updated 7 years ago
- Simple NGram Fast Indexer & Searcher☆37Updated 2 years ago
- Messing around with clamav sigs☆26Updated 5 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 10 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆17Updated last year
- Docker configs and build scripts.☆23Updated 11 years ago
- Virus names generator☆28Updated 10 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆98Updated 11 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated 8 months ago
- A Postfix filter which takes a piped message and submits it to Cuckoo Sandbox☆11Updated 9 years ago
- DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text fil…☆80Updated last year