MISP / misp-wiresharkLinks
Lua plugin to extract data from Wireshark and convert it into MISP format
☆49Updated last year
Alternatives and similar repositories for misp-wireshark
Users that are interested in misp-wireshark are comparing it to the libraries listed below
Sorting:
- Practical Information Sharing between Law Enforcement and CSIRT communities using MISP☆33Updated 2 years ago
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆11Updated last month
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆65Updated 3 years ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆54Updated 9 months ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆78Updated 2 years ago
- A web scraper to create MISP events and reports☆17Updated 3 months ago
- Small web frontend for using openAI's GPT-3.5 and GPT-4's API☆57Updated 5 months ago
- AIL project training materials☆35Updated 2 months ago
- Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.☆51Updated 8 months ago
- Automatic detection engineering technical state compliance☆55Updated last year
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆35Updated 3 years ago
- Declare and keep up a rogue default-gateway in Cisco's HSRP default configuration☆18Updated 8 years ago
- A collection of tips for using MISP.☆74Updated 9 months ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆31Updated last month
- An experimental Velociraptor implementation using cloud infrastructure☆26Updated last week
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆126Updated 2 years ago
- URL fingerprinting made easy☆89Updated last year
- ☆44Updated 2 months ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆132Updated 3 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆35Updated 2 weeks ago
- Automation script to download JSON MISP files from a SFTP server and import them via API to a MISP instance.☆15Updated 2 years ago
- An extension of the sigma standard to include security metrics.☆15Updated 2 years ago
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆62Updated last year
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 8 months ago
- Penguin OS Forensic (or Flight) Recorder☆40Updated 9 months ago
- ☆29Updated 8 months ago
- ☆15Updated 3 years ago
- ☆80Updated 2 years ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆34Updated 3 months ago
- A new Cyber Threat Intelligence Capability Maturity Model (CTI-CMM) to empower your team and create lasting value. Inspired by Industry N…☆40Updated 5 months ago