corelight / ripple20Links
A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.
☆33Updated 3 years ago
Alternatives and similar repositories for ripple20
Users that are interested in ripple20 are comparing it to the libraries listed below
Sorting:
- How to Zeek Sysmon Logs!☆103Updated 3 years ago
- Bro integration with osquery☆15Updated 2 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆49Updated 2 years ago
- Simple web shell scanner written in Golang.☆89Updated 6 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆162Updated 10 months ago
- ☆60Updated last year
- CVE2020-0796 SMBv3 RCE☆61Updated 5 years ago
- A low interaction honeypot for the Cisco ASA component capable of detecting CVE-2018-0101, a DoS and remote code execution vulnerability.☆57Updated 7 years ago
- ☆53Updated 6 years ago
- Historical list of {Cobalt Strike,NanoHTTPD} servers☆120Updated 6 years ago
- ☆35Updated 2 years ago
- Python 3 library to request https://crt.sh/☆36Updated 3 months ago
- Presentations from the CX Security Labs team☆35Updated 6 months ago
- Black Hat EU 2018 - Don't Eat Spaghetti with a Spoon - An Analysis of the Practical Value of Threat Intelligence☆22Updated 7 years ago
- Malware Sinkhole List in various formats☆103Updated 3 years ago
- Explore Indicators of Compromise Automatically☆97Updated 5 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆108Updated 4 years ago
- Malicious actors often reuse code to deploy their malware, phishing website or CNC server. As a result, similiaries can be found on URLs …☆75Updated 2 years ago
- WebLogic Honeypot is a low interaction honeypot to detect CVE-2017-10271 in the Oracle WebLogic Server component of Oracle Fusion Middlew…☆33Updated 5 years ago
- ☆82Updated 5 years ago
- Simulating Adversary Operations☆97Updated 7 years ago
- Linux Exploit Mapper correlates CVEs local to a Linux system with known exploits☆45Updated 3 years ago
- Detect kerberos attacks in pcap files☆29Updated 10 years ago
- ☆44Updated 3 years ago
- Indicator of Compromise Scanner for CVE-2019-19781☆94Updated 5 years ago
- Pulse Secure SSL VPN pre-auth file reading☆50Updated 6 years ago
- Joystick is a tool that gives you the ability to transform the ATT&CK Evaluations data into concise views that brings forward the nuances…☆64Updated 2 years ago
- Python script to detect bluekeep vulnerability (CVE-2019-0708) with TLS/SSL and x509 support☆27Updated 6 years ago
- Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-2…☆99Updated 4 years ago
- collector/runner☆64Updated 4 months ago