al0ne / suricata-rules
Suricata IDS rules 用来检测红队渗透/恶意行为等,支持检测CobaltStrike/MSF/Empire/DNS隧道/Weevely/菜刀/冰蝎/挖矿/反弹shell/ICMP隧道等
☆1,169Updated last year
Alternatives and similar repositories for suricata-rules:
Users that are interested in suricata-rules are comparing it to the libraries listed below
- 常见的攻击行为监测特征及方法,涵盖端点和流量,未包含PowerShell和Sysmon。预祝运营生活愉快!☆617Updated 5 months ago
- 开源安全产品源码,IDS、IPS、WAF、蜜罐等☆1,011Updated 6 months ago
- 🚀 A simple asset discovery engine for cybersecurity. (网络资产发现引擎)☆1,338Updated 2 years ago
- The web management platform of honeypot☆666Updated 4 years ago
- By Kprobe technology Open Source Host-based Intrusion Detection System(HIDS), from E_Bwill.☆593Updated 3 years ago
- Cobalt Strike系列☆2,302Updated last year
- Mars(战神)——资产发现、子域名枚举、C段扫描、资产变更监测、端口变更监测、域名解析变更监测、Awvs扫描、POC检测、web指纹探测、端口指纹探测、CDN探测、操作系统指纹探测、泛解析探测、WAF探测、敏感信息检测等等☆1,257Updated 4 years ago
- 绕过专业工具检测的Webshell研究文章和免杀的Webshell☆1,703Updated 4 years ago
- 目前实现了网络空间资产探测、指纹检索、漏洞检测、漏洞全生命周期管理、poc定向检测、暗链检测、挂马监测、敏感字检测、DNS监测、网站可用性监测、漏洞库管理、安全预警等等~☆884Updated 4 years ago
- Threat Intelligence Gathering 威胁情报收集,旨在提高蓝队拿到攻击 IP 后对其进行威胁情报信息收集的效率。☆847Updated last year
- netspy是一款快速探测内网可达网段工具(深信服深蓝实验室天威战队强力驱动)☆2,050Updated last year
- 收集的一些国外能提供提供威胁情报的公司,涵盖网络安全、工控安全、终端安全、移动安全等领域☆438Updated 6 years ago
- 威胁情报播报☆380Updated this week
- Metarget is a framework providing automatic constructions of vulnerable infrastructures.☆1,149Updated last week
- Struts2全漏洞扫描利用工具☆2,169Updated 3 years ago
- CloudWalker Platform☆670Updated 2 years ago
- BCS(北京网络安全大会)2019 红队行动会议重点内容☆815Updated 5 years ago
- Kunyu, more efficient corporate asset collection☆1,015Updated 2 weeks ago
- EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具☆3,190Updated 10 months ago
- Perun是一款主要适用于乙方安服、渗透测试人员和甲方RedTeam红队人员的网络资产漏洞扫描器/扫描框架☆1,060Updated 5 years ago
- 红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool☆1,857Updated 5 months ago
- 一个主要用于信息搜集的工具集,主要是用于对网站子域名、开放端口、端口指纹、c段地址、敏感目录等信息进行批量搜集。☆1,007Updated 4 years ago
- 应急相关内容积累☆1,176Updated 5 months ago
- 白阁文库是白泽Sec安全团队维护的一个漏洞POC和EXP公开项目☆1,412Updated last year
- 边界打点后的自动化渗透工具☆1,855Updated 3 years ago
- DNSLog 是一款监控 DNS 解析记录和 HTTP 访问记录的工具。☆1,417Updated 6 years ago
- 红队综合渗透框架☆1,170Updated last year
- ☆1,444Updated last year
- 🐝 A highly scalable, safe, free enterprise honeypots 一款高可扩展、安全、免费的企业级蜜罐系统☆440Updated 7 months ago
- 百宝箱☆462Updated 7 months ago