bammv / sguil
Sguil client for NSM
☆215Updated 10 months ago
Alternatives and similar repositories for sguil:
Users that are interested in sguil are comparing it to the libraries listed below
- A Simple QUEry and Report Tool☆142Updated 5 years ago
- ** README ** This repo has MOVED to https://github.com/quadrantsec/sagan☆228Updated 3 years ago
- Sandia Cyber Omni Tracker (SCOT)☆246Updated 2 months ago
- MozDef: The Mozilla Defense Platform☆67Updated 4 years ago
- Evolving directions on building the best Open Source Forensics VM☆159Updated 6 years ago
- ☆140Updated 8 months ago
- Pulled Pork for Snort and Suricata rule management (from Google code)☆424Updated 3 years ago
- File Scanning Framework☆288Updated 3 years ago
- Passive Real-time Asset Detection System☆233Updated 8 months ago
- The Phishing Intelligence Engine - An Active Defense PowerShell Framework for Phishing Defense with Office 365☆180Updated 4 years ago
- Repo for autosnort scripts.☆156Updated 4 years ago
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆152Updated 10 months ago
- CIF v3 -- the fastest way to consume threat intelligence☆183Updated last year
- DPS' Lightweight Investigation Notebook☆427Updated last year
- Automated deployment scripts for the RockNSM network hunting distribution.☆448Updated last year
- ☆201Updated last year
- Barnyard2 is a dedicated spooler for Snort's unified2 binary output format.☆350Updated 9 months ago
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆108Updated 9 months ago
- QRadio ~ Best Threat Intelligence Radio ~ Tune In!☆96Updated 8 years ago
- GoatRider is a simple tool that will dynamically pull down Artillery Threat Intelligence Feeds, TOR, AlienVaults OTX, and the Alexa top 1…☆138Updated 6 years ago
- Threat Feed Aggregation, Made Easy☆166Updated 4 years ago
- Suricata Extreme Performance Tuning guide☆205Updated 6 years ago
- CRITs Services Collection☆183Updated 3 years ago
- OSSEC Documentation☆137Updated last week
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Updated 3 years ago
- Web interface for the Volatility Memory Forensics Framework☆260Updated 7 years ago
- Salt States for Configuring the SIFT Workstation☆97Updated this week
- Web service for scanning pcaps with snort☆108Updated 6 years ago
- Alienvault ossim☆120Updated 5 years ago
- SIFT Bootstrap Script☆146Updated 7 years ago