MAECProject / python-maec
A Python library for parsing, manipulating, and generating MAEC content.
☆41Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for python-maec
- Specifications used in the MISP project including MISP core format☆46Updated last month
- A utility repo to assist with converting between MISP and STIX formats☆64Updated 3 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated last year
- A Python library for parsing, manipulating, and generating CybOX content.☆77Updated 4 years ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆31Updated last week
- Client API to query any Passive DNS implementation following the Passive DNS - Common Output Format.☆76Updated 3 weeks ago
- Zeek support for Community ID flow hashing.☆34Updated last year
- Bro scripts to be shared with the community☆109Updated 11 years ago
- Python module to use the MISP Taxonomies☆29Updated 2 months ago
- stoQ Public Plugins☆71Updated last year
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆30Updated last year
- Detecting DNS Spoofing, DNS Tunneling, DNS Exfiltration☆35Updated 9 years ago
- Malware/IOC ingestion and processing engine☆103Updated 6 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- A framework for receiving and redistributing abuse feeds☆118Updated 5 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- The stratosphere testing framework is mean to help in the researching and verification of the behavioral models used by the Stratoshpere …☆50Updated 6 years ago
- ☆85Updated 11 years ago
- Imports Alienvault OTX pulses to a MISP instance☆52Updated 3 years ago
- Mapping NSM rules to MITRE ATT&CK☆68Updated 4 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- OASIS TC Open Repository: Providing a collection of CTI-related training materials☆47Updated 2 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆96Updated 5 months ago
- Definition, description and relationship types of MISP objects☆91Updated last week
- Tool to extract indicators of compromise from security reports in PDF format☆72Updated 5 months ago
- Pythonic way to work with the galaxies defined there: https://github.com/MISP/misp-galaxy☆19Updated this week
- Potiron - Normalize, Index and Visualize Network Capture☆83Updated 5 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 10 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago