advanced-threat-research / Ripple-20-Detection-LogicLinks
Ripple20 Critical Vulnerabilities - Detection Logic and Signatures
☆12Updated 4 years ago
Alternatives and similar repositories for Ripple-20-Detection-Logic
Users that are interested in Ripple-20-Detection-Logic are comparing it to the libraries listed below
Sorting:
- ☆44Updated 2 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆49Updated 2 years ago
- Suricata rule and intel index☆32Updated last month
- Simple web shell scanner written in Golang.☆89Updated 6 years ago
- A Yara Lua output script for Suricata☆20Updated 6 years ago
- Web shell scanner and analyzer.☆112Updated 2 years ago
- How to Zeek Sysmon Logs!☆102Updated 3 years ago
- ☆78Updated 5 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆158Updated 7 months ago
- A CALDERA plugin☆70Updated 2 weeks ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆79Updated last week
- zeek-scripts☆45Updated 6 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆37Updated 3 years ago
- Look into EDR events from network☆24Updated 5 months ago
- ☆12Updated 3 years ago
- attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage☆114Updated 2 years ago
- Collection of Suricata rule sets that I use modified to my environments.☆40Updated 5 years ago
- collector/runner☆65Updated last month
- ☆33Updated 7 years ago
- A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.☆33Updated 3 years ago
- Old home of LimaCharlie, open source EDR☆32Updated 2 years ago
- Threat Mapping Catalogue☆18Updated 4 years ago
- ☆41Updated 3 years ago
- ☆53Updated 6 years ago
- Bro integration with osquery☆15Updated 2 years ago
- Malicious actors often reuse code to deploy their malware, phishing website or CNC server. As a result, similiaries can be found on URLs …☆75Updated last year
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆70Updated 3 years ago
- Open source tools, libraries, and datasets related to the runZero product and associated research☆121Updated 2 months ago
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆141Updated 8 months ago