alexwebr / sshflow
Proof-of-concept that makes a guess at what applications are being tunneled through an SSH session. It works primarily by analyzing packet sizes and inter-packet timing.
☆10Updated 11 years ago
Related projects ⓘ
Alternatives and complementary repositories for sshflow
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Updated 5 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 4 years ago
- yara rules for crypto detection☆30Updated 10 years ago
- Exfiltration Framework - Exfiltration modeling tool written in Python. Naisho attempts to avoid detection from DLP, IPS/IDS egress filter…☆37Updated 10 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- A Network Inspection Tool☆80Updated 7 years ago
- Vagrant configuration to setup a Dionaea honeypot VM☆19Updated 10 years ago
- Vulnerability Assessment and Auditing Framework for all the Crypto Implementations.☆37Updated 8 years ago
- A tool for netpens.☆29Updated 5 years ago
- ☆19Updated 6 years ago
- An automated collection and analysis of malware from my honeypots.☆25Updated 6 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆42Updated 8 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆34Updated 7 years ago
- Detect malicious domain, Blablablablabla☆26Updated 7 years ago
- CHEF cookbook for automating provisioning of CTF competition and wargame challenge platforms☆12Updated 8 years ago
- Test suite for bypassing Malware sandboxes.☆38Updated 10 years ago
- cuckoo-1.1 fork with suricata/moloch/clamav and other goodies☆23Updated 9 years ago
- Websocket based egress tester☆20Updated 7 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- ☆16Updated 9 years ago
- r2yara - Module for Yara using radare2 information☆34Updated last year
- Capture The Flag hacker contest daemon☆31Updated 7 years ago
- (Unofficial) Python API for https://sslbl.abuse.ch/☆11Updated 7 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆35Updated 8 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 7 years ago