apauna / RASSH
RASSH – Reinforced Adaptive SSH Honeypot This is a project developed for my Phd Thesis and the target is to create an Adaptive Honeypot capable of interacting with attackers using Reinforcement Learning. The code is written in Python and it uses the Kippo SSH Honeypot as reference(source) to create an emulated SSH server that interacts with t…
☆10Updated 5 years ago
Alternatives and similar repositories for RASSH:
Users that are interested in RASSH are comparing it to the libraries listed below
- The IoT honeypot (Master's Thesis)☆8Updated 5 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆32Updated 5 months ago
- An adaptive honeypot using a reinforcement learning implementation, to learn from interactions from automated malware attacks☆21Updated 5 years ago
- ☆14Updated 7 years ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆32Updated 4 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆68Updated 9 months ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- Application and service identification rules for Suricata☆18Updated 2 years ago
- Zeek scripts that provide an alternative log file logging TLS/SSL traffic☆10Updated 3 years ago
- Suricata rule and intel index☆31Updated 2 months ago
- Go implementation of the Community ID flow hashing standard☆20Updated last month
- Mapping NSM rules to MITRE ATT&CK☆70Updated 4 years ago
- Generate JSON force-directed/ node graph data from MITRE's ATTACK framework and visualize it interactively☆22Updated 3 years ago
- Evading Snort Intrusion Detection System.☆77Updated 3 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆42Updated 7 years ago
- A web-based tool to assist the work of the intuitive threat analysts.☆112Updated 6 years ago
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- Zeek script library for getting the effective TLD of a domain.☆13Updated 10 months ago
- An Intelligent Honeypot for Heterogeneous IoT Devices using Reinforcement Learning☆27Updated 5 years ago
- A proof of concept implementation of the Siemens S7 protocol analyser for the Bro IDS.☆16Updated 7 years ago
- This is an open source Snort rules repository☆30Updated 2 years ago
- Golang based web service to scan files with yara rules☆27Updated 7 years ago
- A set of ICS IDS rules for use with Suricata.☆49Updated last year
- Globally distributed honeypots and HoneyNets IOCs and file reversing☆16Updated 10 months ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆34Updated 2 years ago
- This tool maps a file's behavior on MITRE ATT&CK matrix.☆58Updated 5 years ago
- OpenFlow Honeypot☆23Updated 12 years ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- Quickly generate suricata rules for IOCs☆28Updated 3 years ago
- tshark + ELK analytics virtual machine☆67Updated last month