bhdresh / SnortRulesLinks
This is an open source Snort rules repository
☆30Updated 3 years ago
Alternatives and similar repositories for SnortRules
Users that are interested in SnortRules are comparing it to the libraries listed below
Sorting:
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆108Updated 4 years ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆81Updated 8 years ago
- Suricata rules for the new critical vulnerabilities☆85Updated 5 years ago
- Suricata rules for network anomaly detection☆181Updated 2 months ago
- ☆60Updated last year
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆29Updated 2 years ago
- IoT and Operational Technology Honeypot☆105Updated 2 years ago
- Explore Indicators of Compromise Automatically☆97Updated 5 years ago
- zeek-scripts☆45Updated 7 years ago
- Repository of yara rules☆47Updated 10 years ago
- Anomaly detection based on DNS traffic analysis☆54Updated 5 years ago
- 威胁检测规则集☆15Updated 6 years ago
- Repository of creating different example suricata data sets☆36Updated 7 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆162Updated 10 months ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆31Updated 5 years ago
- Collection of Suricata rule sets that I use modified to my environments.☆40Updated 5 years ago
- Using Python script instead of Nmap NSE script to detect ICS protocols[根据nmap nse脚本来编写工控协议识别的python脚本]☆33Updated 5 years ago
- High fidelity JA3 & JA3S combinations for known botnets and alike☆11Updated 6 years ago
- Quickly generate suricata rules for IOCs☆28Updated 4 years ago
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆205Updated 3 years ago
- suricata rules to pcap☆10Updated 4 years ago
- Suricata LUA scripts to detect CVE-2019-12255, CVE-2019-12256, CVE-2019-12258, and CVE-2019-12260☆19Updated 6 years ago
- Repository collecting and automagically processing public threat intelligence reports.☆18Updated 5 years ago
- Advanced threat detection solution for Linux.☆36Updated 5 years ago
- Suspicious DGA from PDNS and Sandbox.☆187Updated 3 years ago
- ☆34Updated 7 years ago
- Suricata rule and intel index☆33Updated 2 weeks ago
- Mapping NSM rules to MITRE ATT&CK☆73Updated 5 years ago
- ☆44Updated 3 years ago
- Digital Bond's IDS/IPS rules for ICS and ICS protocols.☆150Updated 5 years ago