cloudina / hawk
Multi Cloud Antivirus Scanning API using YARA and CLAMAV for AWS S3, Azure Blob Storage and GCP Cloud Storage
☆22Updated 5 months ago
Alternatives and similar repositories for hawk:
Users that are interested in hawk are comparing it to the libraries listed below
- CyCAT.org API back-end server including crawlers☆30Updated 2 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated 3 months ago
- Build Automated Machine Images for MISP☆28Updated last year
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated 8 months ago
- CSIRT Tooling: Best Practices in Developing, Maintaining and Distributing Open Source Tools☆16Updated 2 years ago
- Automatic detection engineering technical state compliance☆54Updated 7 months ago
- ☆12Updated 3 years ago
- ☆24Updated 2 years ago
- ☆15Updated 6 years ago
- Potiron - Normalize, Index and Visualize Network Capture☆84Updated 5 years ago
- SACTI - Securely aggregate CTI sightings and report them on MISP☆13Updated 2 years ago
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆22Updated 5 years ago
- a-ray-grass is a yara module that provides support for DCSO-format bloom filters in yara. In the context of hashlookup, it allows quickly…☆14Updated 2 years ago
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- Threat Feeds, Threat lists, and regular lists of known IP ranges and domains. It updates every 4 hours.☆15Updated 3 years ago
- Caldera plugin to deploy "humans" to emulate user behavior on systems☆27Updated 9 months ago
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆19Updated this week
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 4 years ago
- Automated detection rule analysis utility☆29Updated 2 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆53Updated 4 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 5 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated last month
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆39Updated last year
- Best practices in threat intelligence☆46Updated 2 years ago
- ☆15Updated 3 years ago
- Zeek Extension to Collect Metadata for Profiling of Endpoints and Proxies☆27Updated 11 months ago
- Tool for automatic list generation of known TOR and VPN exit nodes☆30Updated last year
- An elevated STIX representation of the MITRE ATT&CK Groups knowledge base☆23Updated 2 years ago