adulau / pdns-qofLinks
Passive DNS Common Output Format
☆36Updated 9 months ago
Alternatives and similar repositories for pdns-qof
Users that are interested in pdns-qof are comparing it to the libraries listed below
Sorting:
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆33Updated 3 months ago
- IntelMQ command line tool to process events and send out email notifications.☆9Updated last week
- Python module to use the MISP Taxonomies☆29Updated this week
- ☆24Updated 2 years ago
- Home to the ActorTrackr source code☆29Updated 7 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- References for FIRST CTI 2019 Symposium presentation☆22Updated 6 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 8 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- Specifications used in the MISP project including MISP core format☆51Updated 4 months ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- This repository is a curated list of pro bono incident response entities.☆20Updated last year
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆29Updated 2 years ago
- ☆14Updated 7 years ago
- Validates yara rules and tries to repair the broken ones.☆39Updated 4 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- A Postfix filter which takes a piped message and submits it to Cuckoo Sandbox☆11Updated 9 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 5 months ago
- ☆33Updated 5 years ago
- Imports Alienvault OTX pulses to a MISP instance☆52Updated 3 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Passive DNS visualization and Passive DNS server toolkit☆35Updated 13 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 4 years ago
- DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text fil…☆77Updated last year
- Home to the ActorTrackr source code☆24Updated 7 years ago
- CRL Monitor - X.509 Certificate Revocation List monitoring and X.509/Subject caching☆34Updated 4 years ago