ccdcoe / frankenstack
Busted. With duct tape, spit and tears. Brought to you by beer.
☆12Updated 3 years ago
Alternatives and similar repositories for frankenstack
Users that are interested in frankenstack are comparing it to the libraries listed below
Sorting:
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 9 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- You're busted!☆26Updated 5 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 8 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆38Updated 7 months ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆17Updated 8 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Build your own threat hunting maturity model☆11Updated 7 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- CyCAT.org taxonomies☆15Updated 3 years ago
- Zeek package to detect Zerologon☆11Updated 3 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 8 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- ☆14Updated 6 years ago
- Validate IOC from MISP ; Export results and iocs to SIEM and sensors using syslog and CEF format☆14Updated 8 years ago
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆19Updated 2 years ago
- This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.☆22Updated 7 years ago
- ☆15Updated 7 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- SightingDB is a database for Sightings☆22Updated last year
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- Pythonic way to work with the galaxies defined there: https://github.com/MISP/misp-galaxy☆19Updated 5 months ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- Python-based cloud node for local use☆11Updated 7 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- IntelMQ command line tool to process events and send out email notifications.