bez0r / BeaconBits
Network timing evaluation used to detect beacons, works with argus flow as the source
☆19Updated 8 years ago
Related projects ⓘ
Alternatives and complementary repositories for BeaconBits
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Debian and Red Hat packaging for SIE DNS sensor☆15Updated last year
- Passive DNS V2☆62Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 4 years ago
- The Auditd Framework logs and applies security policy to linux auditd data☆15Updated 6 years ago
- Set of scripts to index PCAP files and retrieve packets☆14Updated 9 years ago
- Help summarize a PCAP file☆33Updated 12 years ago
- Honeypot log processor to create OTX Pulse entries☆29Updated 10 months ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33Updated 8 years ago
- OpenFlow Honeypot☆23Updated 11 years ago
- ☆12Updated 7 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- Golang based web service to scan files with yara rules☆27Updated 7 years ago
- Hosted analyzers built for Grapl☆13Updated last year
- Download all packet captures from http://malware-traffic-analysis.net/☆19Updated 10 years ago
- brostash: Linux distribution based on Debian and focusing on network security events collection☆34Updated 4 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆42Updated 7 years ago
- A content inspecting SMTP proxy☆17Updated 10 years ago
- Advanced Persistent Threat Detection Using Network Analysis☆22Updated 5 years ago
- encoding format, library, and utilities for passive DNS data☆26Updated 7 months ago
- Email Abuse - A Versatile Software for Email review, analysis and reporting☆21Updated 9 years ago
- module for osquery to load Bro logs into tables☆28Updated 9 years ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 4 years ago
- An ICAP Server with yara scanner for URL and content.☆57Updated 3 years ago
- integrating bro into yara☆33Updated 9 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 9 years ago
- yara rules for crypto detection☆30Updated 10 years ago
- Passive DNS visualization and Passive DNS server toolkit☆35Updated 12 years ago