Security-Onion-Solutions / securityonion-nsmnow-admin-scriptsLinks
☆22Updated 5 years ago
Alternatives and similar repositories for securityonion-nsmnow-admin-scripts
Users that are interested in securityonion-nsmnow-admin-scripts are comparing it to the libraries listed below
Sorting:
- ☆36Updated 5 years ago
- Security Onion Elastic Stack☆46Updated 5 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- Windows version of honeybits - a PoC tool to create breadcrumbs and honeytokens, to lead the attackers to your honeypots!☆25Updated 8 years ago
- How to Zeek Sysmon Logs!☆103Updated 4 years ago
- A simple Docker container that serves the MITRE ATT&CK Navigator web app☆27Updated 2 years ago
- Example Suricata rules implementing some of my detection tactics☆22Updated 3 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆56Updated this week
- Elasticsearch/Kibana environment and log data for Sigma workshop☆27Updated 6 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Updated 8 years ago
- Foxhound: Blackbox - A Raspberry Pi NSM☆37Updated 8 years ago
- A website and framework for testing NIDS detection☆57Updated 4 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆65Updated 8 years ago
- A lightweight tool to score network traffic and flag anomalies☆123Updated last year
- Plugin for Zeek/Bro which provides http2 decoder/analyzer☆30Updated last year
- ☆49Updated 10 years ago
- Identify compromised domains or emails. A python based HIBP and HackedEmails wrapper☆38Updated 7 years ago
- ☆50Updated 5 years ago
- Mitre Att&ck Technique Emulation☆82Updated 6 years ago
- Documentation for Zeek☆50Updated 4 months ago
- Expandable Defensive Cyber Operations Platform☆44Updated 3 years ago
- Deploy MISP Project software with Vagrant.☆45Updated 5 years ago
- A Yara Lua output script for Suricata☆20Updated 6 years ago
- Materials for the BSides NoVA/Charleston 2018 Bro Workshop☆14Updated 8 months ago
- Splunk App to assist Sysmon Threat Hunting☆38Updated 8 years ago
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆64Updated 2 years ago
- ☆21Updated 5 years ago
- A lightweight tool to load Windows Event Log evtx files into Elasticsearch.☆119Updated 5 years ago
- Tools to assist in forensicating docker☆86Updated 11 months ago