cmu-sei / greybox
A tool to host an Internet simulation
☆53Updated 5 months ago
Alternatives and similar repositories for greybox:
Users that are interested in greybox are comparing it to the libraries listed below
- Scripts to generate an Internet simulation☆34Updated 5 months ago
- Run zeek with zeekctl in docker☆51Updated 4 months ago
- Primary data pipelines for intrusion detection, security analytics and threat hunting☆86Updated 3 years ago
- Virtual Lab builder and player☆15Updated 3 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆94Updated 2 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 4 years ago
- An ELK environment containing interesting security datasets.☆133Updated 4 years ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Volatility plugins developed and maintained by the community☆21Updated 4 months ago
- ☆48Updated 4 years ago
- Device profile: Define acceptable amounts of traffic for your devices and see a report of outliers.☆16Updated 5 years ago
- PowerShell - Endpoint Analysis Solution Your Windows Intranet Needs☆46Updated last month
- automate your MISP installs☆66Updated 4 years ago
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆124Updated 2 years ago
- ☆34Updated 3 years ago
- Repository containing Jupyter Notebooks for working with OSQuery tables and data☆16Updated 4 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆47Updated 6 years ago
- Integrate Zeek with Alienvault OTX☆25Updated 4 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Updated 8 years ago
- Carbon Black Feeds☆72Updated last year
- The FASTEST way to consume threat intel.☆66Updated last year
- ☆54Updated 3 years ago
- Assimilate is a series of scripts for using the Naïve Bayes algorithm to find potential malicious activity in HTTP headers☆90Updated 7 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated last month
- Dashboards and loader for ROCK NSM dashboards☆48Updated last year
- Corelight@Home script☆40Updated last year
- FRAC and RIFT☆17Updated 5 years ago
- A virtual appliance for building cyber labs, challenges and competitions☆23Updated last month
- ☆29Updated 3 years ago