TedDriggs / ctiLinks
Cyber threat intelligence crates for Rust
☆16Updated 2 years ago
Alternatives and similar repositories for cti
Users that are interested in cti are comparing it to the libraries listed below
Sorting:
- Framework definitions that allow to build a custom SIEM.☆28Updated last year
- A cross platform forensic parser written in Rust!☆101Updated this week
- Rust bindings for VirusTotal/Yara☆80Updated 2 months ago
- A Rust library for parsing and evaluating Sigma rules☆19Updated 2 months ago
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆56Updated this week
- Rust implementation of the DCSO Bloom filter☆29Updated 6 months ago
- An implementation of a Windows Event Collector server running on GNU/Linux.☆92Updated 2 weeks ago
- A parser for the MFT (Master File Table) format☆155Updated last month
- A document tagging library☆33Updated 10 months ago
- Golang library that implements a sigma log rule parser and match engine.☆104Updated last year
- File Capability Extractor☆14Updated 6 months ago
- Fast, inline geolocation decoration of IPv4 and IPv6 addresses written in Rust☆29Updated 2 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆36Updated 3 years ago
- Python bindings for https://github.com/omerbenamram/evtx/☆55Updated last month
- Security ML models encoded as Yara rules☆215Updated 2 years ago
- Basically a KrabsETW rip-off written in Rust☆83Updated 3 months ago
- Safe and performant YARA rules evaluator in Rust☆67Updated 2 months ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆84Updated this week
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆15Updated 4 years ago
- Alternative YARA scanning engine☆73Updated 3 years ago
- PAL (Pcap Analysis Library)☆104Updated 6 months ago
- Signature engine for all your logs☆173Updated 2 years ago
- Firepit - STIX Columnar Storage☆17Updated last year
- CAPE Auto-Hardened Installer☆25Updated 2 weeks ago
- MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats☆56Updated this week
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆269Updated 2 years ago
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆91Updated this week
- Trigram database written in C++, suited for malware indexing☆130Updated 2 weeks ago
- OASIS TC Open Repository: TAXII 2 Client Library Written in Python☆120Updated last year
- ☆228Updated 2 months ago