automayt / FlowPlotterLinks
Generates visualizations from the output of flow tools such as SiLK.
☆35Updated 8 years ago
Alternatives and similar repositories for FlowPlotter
Users that are interested in FlowPlotter are comparing it to the libraries listed below
Sorting:
- Traceroute improved wrapper for CSIRT and CERT operators☆38Updated 9 months ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Validate IOC from MISP ; Export results and iocs to SIEM and sensors using syslog and CEF format☆14Updated 8 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 8 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Python script that gets IOC from MISP and converts it into BRO intel files.☆13Updated 9 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 6 months ago
- Yara rules I've written☆10Updated 9 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- Threat Intelligence distribution☆30Updated 9 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 9 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- the fastest way to consume threat intelligence.☆29Updated 2 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- Detect Phishing with Bro IDS☆18Updated 8 years ago
- Honeypot log processor to create OTX Pulse entries☆28Updated last year
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- Cli interface to threatcrowd.org☆19Updated 8 years ago
- CRL Monitor - X.509 Certificate Revocation List monitoring and X.509/Subject caching☆34Updated 4 years ago
- A collection of bro_scripts and signatures☆26Updated 6 years ago
- Passive DNS V2☆60Updated 11 years ago
- integrating bro into yara☆33Updated 10 years ago
- Python script to pull various IOCs from PDFs☆15Updated 10 years ago
- ☆85Updated 11 years ago
- Workbench: A scalable python framework for security research and development teams.☆92Updated 5 years ago
- Just another tool to extract Indicator of compromise (ioc) from files☆29Updated 9 years ago
- A Python script for indexing (putting) FireEye alert data into Elasticsearch...and notifying you too.☆16Updated 6 years ago