RyPeck / python-LEEF
Python Module for creating Log Event Extended Format events for IBM QRadar
☆12Updated 8 years ago
Alternatives and similar repositories for python-LEEF
Users that are interested in python-LEEF are comparing it to the libraries listed below
Sorting:
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- integrating bro into yara☆33Updated 10 years ago
- Common Vulnerabilities and Exposures - Portal. Archived and now replaced by vulnerability-lookup.org☆85Updated 2 months ago
- Potiron - Normalize, Index and Visualize Network Capture☆85Updated 6 years ago
- Plugins written for CVE-Search☆25Updated 4 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated last year
- Push "BAD" IPs/Networks into QRadar's "Remote Networks", tag them properly, and use them!☆18Updated 11 years ago
- ☆23Updated 5 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- ☆22Updated 5 years ago
- Maltese - Malware Traffic Emulator☆26Updated 8 years ago
- Bro Snippets☆21Updated 10 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- A Python library for being a CND Batman....☆35Updated 9 years ago
- ☆85Updated 11 years ago
- A Network Inspection Tool☆81Updated 7 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- Email Abuse - A Versatile Software for Email review, analysis and reporting☆21Updated 9 years ago
- ☆36Updated 4 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- scan-detection policies for bro☆16Updated 4 months ago
- Threat Intelligence distribution☆30Updated 9 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 10 years ago
- Connectors for the Zeek NetControl framework☆19Updated 3 months ago
- Automation for VirusTotal☆31Updated 9 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆38Updated 7 months ago
- DEPRECATED USE v3!☆59Updated 9 years ago
- Passive Network Audit Framework☆32Updated 7 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 8 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 7 years ago