clong / vagrant-ids
An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk
☆23Updated 6 years ago
Alternatives and similar repositories for vagrant-ids:
Users that are interested in vagrant-ids are comparing it to the libraries listed below
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- ☆22Updated 7 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 7 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Modern Honey Net set-up and configure scripts to automate multiple installs.☆8Updated 7 years ago
- This repository is a curated list of pro bono incident response entities.☆20Updated last year
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- JoeSandbox-Bro is a simple bro script which extracts files from your internet connection and analyzes them automatically on Joe Sandbox☆44Updated 5 years ago
- Passive DNS V2☆62Updated 10 years ago
- Passive Network Audit Framework☆32Updated 6 years ago
- Python bindings for Yeti's API☆18Updated last year
- A collection of Python utilities for use in scripts related to working with "indicators of compromise" (IOCs).☆17Updated 6 years ago
- (Unofficial) Python API for https://sslbl.abuse.ch/☆11Updated 8 years ago
- Honeypot log processor to create OTX Pulse entries☆29Updated last year
- Traceroute improved wrapper for CSIRT and CERT operators☆37Updated 4 months ago
- Detect malicious domain, Blablablablabla☆26Updated 8 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- Bro PCAP Processing and Tagging API☆28Updated 7 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 7 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- ☆16Updated 10 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- cuckoo-1.1 fork with suricata/moloch/clamav and other goodies☆23Updated 9 years ago
- Python script to automatically create sigma rules from The hive observables☆23Updated 5 years ago
- Cli interface to threatcrowd.org☆19Updated 7 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Spam trap management☆23Updated 7 months ago