advanced-threat-research / Ripple-20-Detection-LogicLinks
Ripple20 Critical Vulnerabilities - Detection Logic and Signatures
☆12Updated 4 years ago
Alternatives and similar repositories for Ripple-20-Detection-Logic
Users that are interested in Ripple-20-Detection-Logic are comparing it to the libraries listed below
Sorting:
- ☆44Updated 2 years ago
- Simple web shell scanner written in Golang.☆89Updated 6 years ago
- How to Zeek Sysmon Logs!☆103Updated 3 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆81Updated last week
- A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.☆33Updated 3 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆37Updated 3 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆49Updated 2 years ago
- zeek-scripts☆45Updated 6 years ago
- Collection of Suricata rule sets that I use modified to my environments.☆40Updated 5 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆159Updated 7 months ago
- ☆53Updated 6 years ago
- ☆12Updated 3 years ago
- ☆78Updated 5 years ago
- Suricata rule and intel index☆33Updated 2 weeks ago
- ☆35Updated last year
- Threat Mapping Catalogue☆18Updated 4 years ago
- 威胁检测规则集☆15Updated 6 years ago
- ☆42Updated 3 years ago
- Bro integration with osquery☆15Updated 2 years ago
- Look into EDR events from network☆23Updated this week
- Web shell scanner and analyzer.☆113Updated 2 years ago
- A CALDERA plugin for ATT&CK Evaluations Round 1☆33Updated 2 years ago
- Quickly generate suricata rules for IOCs☆28Updated 4 years ago
- collector/runner☆65Updated 2 months ago
- ☆82Updated 4 years ago
- A CALDERA plugin☆71Updated this week
- Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-2…☆98Updated 4 years ago
- Open source tools, libraries, and datasets related to the runZero product and associated research☆123Updated 3 months ago
- Generic Signature Format for SIEM Systems☆18Updated 2 years ago
- Script to export Nessus results to a relational database for use in reports, analysis, or whatever else.☆70Updated 7 months ago