MISP / misp-sighting-serverLinks
MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indicators) in a space efficient way.
☆15Updated last year
Alternatives and similar repositories for misp-sighting-server
Users that are interested in misp-sighting-server are comparing it to the libraries listed below
Sorting:
- Fast lookup server for NSRL and other hash database used in digital forensic☆45Updated 3 years ago
 - A Modular MWDB Utility to Collect Fresh Malware Samples☆34Updated 4 years ago
 - A collection of my public YARA signatures for various malware families☆30Updated last year
 - MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 4 years ago
 - A web scraper to create MISP events and reports☆17Updated 4 months ago
 - Yara rules☆22Updated 2 years ago
 - A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆11Updated 2 months ago
 - YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.☆27Updated 3 years ago
 - Automate the regular transfer of AIS data into a MISP Server☆10Updated last year
 - Automatic detection engineering technical state compliance☆55Updated last year
 - Collection of scripts used to analyse malware or emails☆20Updated 5 years ago
 - ☆23Updated 2 years ago
 - NTFS file system specimens☆13Updated 2 years ago
 - Python library to query various sources of threat intelligence for data on domains, file hashes, and IP addresses.☆31Updated last year
 - ☆14Updated 2 years ago
 - ☆25Updated 3 years ago
 - ☆36Updated 2 years ago
 - Low budget VirusTotal Intelligence Cosplay☆20Updated 3 years ago
 - Python based CLI for MalwareBazaar☆38Updated 3 months ago
 - Integration between MISP platform and McAfee MVISION EDR☆14Updated 3 years ago
 - Tool for automatic list generation of known TOR and VPN exit nodes☆29Updated last year
 - Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆23Updated last year
 - Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆34Updated 3 years ago
 - Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Updated 8 months ago
 - Repository for scripts and tips for "Yara Scan Service"☆20Updated 2 years ago
 - TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to …☆27Updated 3 years ago
 - Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆13Updated last year
 - The Purpose of this research tool is to provide a Python client into RiskIQ API services.☆22Updated 4 years ago
 - FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.☆62Updated 5 months ago
 - ☆23Updated 7 months ago