Masood-M / yalihLinks
YALIH (Yet Another Low Interaction Honeyclient) is a low Interaction Client honeypot designed to detect malicious websites through signature, anomaly and pattern matching techniques
☆68Updated 6 years ago
Alternatives and similar repositories for yalih
Users that are interested in yalih are comparing it to the libraries listed below
Sorting:
- Aggregates security threats from a number of online sources, and outputs to Syslog CEF, Snort Signatures, Iptables rules, hosts.deny, etc…☆81Updated 9 years ago
- a Malware/Threat Analyst Desktop☆89Updated 9 years ago
- Cyber Intel Management☆48Updated 7 years ago
- Basic Maltego Transforms for looking up SSL certs and IP info from censys.io☆41Updated 8 years ago
- A set of templates for documenting threat intelligence☆74Updated 12 years ago
- (Unofficial) Python API for https://malwr.com/☆62Updated 8 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 9 years ago
- Passive DNS V2☆60Updated 11 years ago
- A set of Maltego transforms for VirusTotal Public API v2.0. This set has the added functionality of caching queries on a daily basis to s…☆81Updated 9 years ago
- Credential Phish Analysis and Automation☆97Updated 6 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- A modular Python application to pull intelligence about malicious files☆122Updated 4 years ago
- Malware Repository Framework☆99Updated 7 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Pivotable Reverse WhoIs / PDNS Fusion with Registrant Tracking & Alerting plus API for automated queries (JSON/CSV/TXT)☆159Updated 3 years ago
- Malware/IOC ingestion and processing engine☆105Updated 6 years ago
- A framework for receiving and redistributing abuse feeds☆124Updated 5 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 6 months ago
- An environment for comprehensive, automated analysis of web-based exploits, based on Cuckoo sandbox.☆125Updated 9 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- A warehouse for your malware☆134Updated 12 years ago
- Command line tool for scanning streams within office documents plus xor db attack☆126Updated last year
- Docker container for MISP☆96Updated 7 years ago
- Python API for URL Query☆35Updated 9 years ago
- Megatron - A System for Abuse- and Incident Handling☆44Updated 8 years ago
- Gather and compile open source threat intelligence feeds.☆39Updated 3 years ago
- YAPDNS☆39Updated 10 years ago
- Enrich a host with open source security information☆27Updated 9 years ago
- Some IR notes☆73Updated 8 years ago