PUNCH-Cyber / stoq-plugins-public
stoQ Public Plugins
☆71Updated 2 years ago
Alternatives and similar repositories for stoq-plugins-public:
Users that are interested in stoq-plugins-public are comparing it to the libraries listed below
- InvestigationPlaybookSpec☆72Updated 7 years ago
- Imports Alienvault OTX pulses to a MISP instance☆52Updated 3 years ago
- IOC (Indicator of Compromise) Extractor: a program to help extract IOCs from text files.☆135Updated 9 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- IOC Management and Visualization Tool☆47Updated 2 years ago
- Python IOC Editor☆62Updated 10 years ago
- Repository of scripts/tools that may be useful in Security Operations Centres (SOC)☆54Updated 4 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆72Updated 9 months ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- YETI is a TAXII implementation☆46Updated 5 years ago
- Hunting IOCs all day every day...☆86Updated last year
- ☆55Updated 3 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Updated 4 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- ☆36Updated 8 years ago
- ☆33Updated 4 years ago
- A Windows Event Processing Utility☆46Updated 7 years ago
- A set of templates for documenting threat intelligence☆74Updated 12 years ago
- References for FIRST CTI 2019 Symposium presentation☆22Updated 6 years ago
- PowerShell No Agent Hunting☆110Updated 6 years ago
- Assimilate is a series of scripts for using the Naïve Bayes algorithm to find potential malicious activity in HTTP headers☆90Updated 7 years ago
- Parse a report and import the events into MISP☆29Updated 9 years ago
- CuckooMX is a project to automate analysis of files transmitted over SMTP (using the Cuckoo sandbox)☆41Updated 12 years ago
- Mystique may be used to discover infection markers that can be used to vaccinate endpoints against malware. It receives as input a malici…☆82Updated 7 years ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 6 years ago
- Definition, description and relationship types of MISP objects☆96Updated this week
- Repository containing IOCs, CSV and MISP JSON from our blogs☆81Updated 3 years ago
- A Yara rule generator for finding related samples and hunting☆158Updated 2 years ago
- Some IR notes☆73Updated 8 years ago