TedDriggs / ctiLinks
Cyber threat intelligence crates for Rust
☆16Updated last year
Alternatives and similar repositories for cti
Users that are interested in cti are comparing it to the libraries listed below
Sorting:
- Framework definitions that allow to build a custom SIEM.☆28Updated last year
- Rust bindings for VirusTotal/Yara☆78Updated 7 months ago
- A Rust library for parsing and evaluating Sigma rules☆15Updated 5 months ago
- A cross platform forensic parser written in Rust!☆98Updated last week
- Rust implementation of the DCSO Bloom filter☆28Updated 3 months ago
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆53Updated this week
- A document tagging library☆30Updated 6 months ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆36Updated 2 years ago
- A parser for the MFT (Master File Table) format☆147Updated last week
- File Capability Extractor☆13Updated 3 months ago
- An implementation of a Windows Event Collector server running on GNU/Linux.☆77Updated this week
- Python bindings for https://github.com/omerbenamram/evtx/☆52Updated 7 months ago
- SysFlow collection probe☆16Updated this week
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆15Updated 3 years ago
- Alternative YARA scanning engine☆72Updated 3 years ago
- LOKI2 - Simple IOC and YARA Scanner☆102Updated 3 months ago
- Basically a KrabsETW rip-off written in Rust☆75Updated 3 weeks ago
- This repository includes a mapping table and a reference process that allows converting between STIX 2.1 Course of Action objects that ma…☆16Updated 3 years ago
- Golang library that implements a sigma log rule parser and match engine.☆100Updated last year
- Trigram database written in C++, suited for malware indexing☆126Updated 11 months ago
- Safe and performant YARA rules evaluator in Rust☆66Updated last month
- OASIS TC Open Repository: Non-normative schemas and examples for STIX 2☆128Updated 3 months ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆79Updated 4 months ago
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆90Updated 3 weeks ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆107Updated 5 months ago
- Threat hunting with Sysmon and ArangoDB Graphs☆12Updated 5 years ago
- SOARCA - The Open Source CACAO-based Security Orchestrator!☆83Updated last month
- stix-icons is a collection of colourful and clean icons for use in software, training and marketing material to visualize cyber threats a…☆35Updated 2 years ago
- This repository has been archived in favor of https://github.com/idaholab/Malcolm-Test-Artifacts☆37Updated 10 months ago
- Signature engine for all your logs☆171Updated last year