Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.
☆98Oct 21, 2014Updated 11 years ago
Alternatives and similar repositories for yaraprocessor
Users that are interested in yaraprocessor are comparing it to the libraries listed below
Sorting:
- Protocol Analysis/Decoder Framework☆497Dec 19, 2022Updated 3 years ago
- Python bindings to libhtp☆31Oct 13, 2020Updated 5 years ago
- CRITs - Collaborative Research Into Threats☆21Mar 13, 2019Updated 6 years ago
- An Installation Script for Bro IDS on Debian Based Systems☆20Jun 25, 2020Updated 5 years ago
- A content inspecting SMTP proxy☆17Jun 9, 2014Updated 11 years ago
- A Python library for being a CND Batman....☆35Oct 29, 2015Updated 10 years ago
- Process HTTP Pcaps With YARA☆108Jul 29, 2013Updated 12 years ago
- Pivotable Reverse WhoIs / PDNS Fusion with Registrant Tracking & Alerting plus API for automated queries (JSON/CSV/TXT)☆159Sep 20, 2021Updated 4 years ago
- integrating bro into yara☆33Dec 9, 2014Updated 11 years ago
- A Python command line argument to object parsing library for command line application development☆14Mar 23, 2016Updated 9 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Nov 25, 2021Updated 4 years ago
- Bro Snippets☆21Nov 7, 2014Updated 11 years ago
- OpenFlow Honeypot☆24Jan 5, 2013Updated 13 years ago
- Modular file scanning/analysis framework☆622Oct 8, 2019Updated 6 years ago
- IOC (Indicator of Compromise) Extractor: a program to help extract IOCs from text files.☆135Jan 14, 2016Updated 10 years ago
- Mass static malware analysis tool☆94Feb 13, 2022Updated 4 years ago
- ☆29Nov 10, 2016Updated 9 years ago
- rename☆19Jul 19, 2017Updated 8 years ago
- Extract information from MISP via the API☆16Jul 18, 2016Updated 9 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Feb 26, 2015Updated 11 years ago
- Malware analysis using Docker project☆25Mar 3, 2016Updated 10 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Dec 8, 2016Updated 9 years ago
- DPS' Lightweight Investigation Notebook☆433Dec 31, 2023Updated 2 years ago
- threat language parser☆59Apr 20, 2015Updated 10 years ago
- Using osquery for Mass Incident Detection & Response☆19Jun 25, 2016Updated 9 years ago
- Simple Docker Honeypot server emulating small snippets of the Docker HTTP API☆33Oct 6, 2020Updated 5 years ago
- Dockerfiles for NSM tools☆84Apr 14, 2017Updated 8 years ago
- A collection of bro_scripts and signatures☆27Jun 26, 2019Updated 6 years ago
- Tiny Honeypot☆19Aug 9, 2013Updated 12 years ago
- Manage VT Alerts☆62Oct 4, 2016Updated 9 years ago
- Pool Overflow in OpenVpn NDIS TAP Driver☆17Nov 3, 2015Updated 10 years ago
- Compressed Rich Text Format (RTF) compression and decompression in Python☆23Jun 29, 2025Updated 8 months ago
- Python pcap sanitizer☆21Sep 2, 2022Updated 3 years ago
- ☆75Jan 24, 2017Updated 9 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Nov 5, 2019Updated 6 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Oct 14, 2020Updated 5 years ago
- ☆16Dec 26, 2022Updated 3 years ago
- Repository for Security Workshop content☆20Sep 4, 2017Updated 8 years ago
- CVE Builder script that generates STIX formatted Exploit Target objects☆18Oct 18, 2016Updated 9 years ago