This repository is created to add value to existing Network Security Monitoring solutions.
☆17Sep 30, 2016Updated 9 years ago
Alternatives and similar repositories for NSM
Users that are interested in NSM are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Indices for courses in SANS' Network Security Operations curriculum☆17Feb 5, 2016Updated 10 years ago
- ☆50Aug 30, 2020Updated 5 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Sep 20, 2016Updated 9 years ago
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆131Oct 24, 2022Updated 3 years ago
- Convert Windows Netmon Monitor Mode Wireless Packet Captures to Libpcap Format☆15Jul 20, 2019Updated 6 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Wrap any binary into a cached webserver☆63Apr 5, 2022Updated 4 years ago
- ☆78Jun 25, 2019Updated 6 years ago
- Bluewall is a firewall framework designed for offensive and defensive cyber professionals.☆106Apr 7, 2019Updated 7 years ago
- ☆30Nov 15, 2018Updated 7 years ago
- ArcSight's Common Event Format library☆39Nov 3, 2023Updated 2 years ago
- Use Neo4j to help visualize, explore and analyze GCP resources and IAM across your organization☆11Sep 1, 2020Updated 5 years ago
- A curated list of Docker resources☆28Nov 13, 2015Updated 10 years ago
- ☆228Nov 9, 2023Updated 2 years ago
- A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis☆29Aug 6, 2025Updated 10 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- TelerikUI Vulnerability Scanner (CVE-2019-18935)☆13May 10, 2023Updated 3 years ago
- ☆20Nov 6, 2023Updated 2 years ago
- Threat Feed Aggregation, Made Easy☆169Jul 13, 2020Updated 5 years ago
- This is a repository for freq.py and freq_server.py☆223Feb 1, 2026Updated 4 months ago
- An extension of the sigma standard to include security metrics.☆16May 18, 2023Updated 3 years ago
- Windows log and threat hunting with powershell☆16Dec 11, 2020Updated 5 years ago
- MCP Server for Contrast Security☆19Updated this week
- Cloud threat detection visualization from excalidraw☆12Apr 25, 2022Updated 4 years ago
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆55Jul 1, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- MITRE ATT&CK Based App in Power BI☆18Feb 23, 2024Updated 2 years ago
- Source code for the experimental, compact "wee" file compression utility.☆13May 8, 2020Updated 6 years ago
- Contains Logstash related content including tons of Logstash configurations☆254Aug 25, 2021Updated 4 years ago
- ☆17Aug 27, 2022Updated 3 years ago
- ☆24Dec 2, 2022Updated 3 years ago
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆13Jan 24, 2026Updated 4 months ago
- Open SAMMY codebase☆25May 27, 2026Updated 2 weeks ago
- A collection of typical false positive indicators☆56Dec 5, 2020Updated 5 years ago
- ☆14Dec 5, 2014Updated 11 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Zscaler Integration MCP Server is a Model Context Protocol (MCP) server designed for managing Several Zscaler Products using Large Langua…☆38Updated this week
- Summit Route End Point Protection - Server code☆11Apr 10, 2016Updated 10 years ago
- Still in dev mode☆12Apr 24, 2018Updated 8 years ago
- Synapse Rapid Power-up for SinkDB☆11Jun 24, 2025Updated 11 months ago
- Network Security Monitoring Framework☆49Oct 19, 2012Updated 13 years ago
- Tools for attacking various MIFARE RFID cards☆17Jun 21, 2019Updated 6 years ago
- Here comes the paintrain!☆11Aug 8, 2016Updated 9 years ago