PaloAltoNetworks / pyjarm
pyJARM is a library for doing JARM fingerprinting using python
☆49Updated last month
Alternatives and similar repositories for pyjarm
Users that are interested in pyjarm are comparing it to the libraries listed below
Sorting:
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- ☆43Updated 2 years ago
- Threat Detection Rules (Snort/Sigma/Yara)☆13Updated last year
- Threat Mapping Catalogue☆17Updated 3 years ago
- ☆24Updated 2 years ago
- ☆38Updated 6 months ago
- Website crawler with YARA detection☆88Updated last year
- Active C2 IoCs☆99Updated 2 years ago
- certstream + analytics☆10Updated 5 years ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆61Updated last year
- Suricata rule and intel index☆30Updated last month
- A list of JARM hashes for different ssl implementations used by some C2/red team tools.☆140Updated 2 years ago
- Links to malware-related YARA rules☆15Updated 2 years ago
- ☆45Updated last year
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆76Updated last year
- Tracking APT IOCs☆25Updated 4 years ago
- DGA Detective - Hunt domains generated by Domain Generation Algorithms to identify malware traffic☆41Updated 9 months ago
- ☆42Updated last year
- Merge of two major cyber adversary datasets, MITRE ATT&CK and ETDA/ThaiCERT Threat Actor Cards, enabling victim/motivation-adversary-tech…☆54Updated 2 years ago
- A library and command line tool for extracting indicators of compromise (IOCs) from security reports in PDF, HTML, Word, or text format☆31Updated 3 weeks ago
- Detecting Cobalt Strike Team Servers on targets through traffic telemetry.☆22Updated 9 months ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 4 months ago
- Tool to read EVTX files including SYSMON and convert to JSON, MISP Objects and Graph stream☆11Updated 4 years ago
- Tools used by CSIRT and especially in the scope of CNW☆16Updated 7 months ago
- An extension of the sigma standard to include security metrics.☆15Updated last year
- Modular malware analysis artifact collection and correlation framework☆53Updated last year
- A CALDERA plugin for ATT&CK Evaluations Round 1☆33Updated last year
- List of sigma for a variety of threats for multiple log sources.☆12Updated 6 years ago
- Pointer was developed for massive hunting and mapping Cobalt Strike servers exposed on the internet.☆65Updated 3 years ago