corelight / ripple20Links
A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.
☆33Updated 3 years ago
Alternatives and similar repositories for ripple20
Users that are interested in ripple20 are comparing it to the libraries listed below
Sorting:
- How to Zeek Sysmon Logs!☆103Updated 3 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆159Updated 8 months ago
- Bro integration with osquery☆15Updated 2 years ago
- Historical list of {Cobalt Strike,NanoHTTPD} servers☆121Updated 6 years ago
- ☆53Updated 6 years ago
- Simple web shell scanner written in Golang.☆89Updated 6 years ago
- ☆59Updated last year
- collector/runner☆64Updated 3 months ago
- Explore Indicators of Compromise Automatically☆97Updated 5 years ago
- Python 3 library to request https://crt.sh/☆36Updated last month
- CVE2020-0796 SMBv3 RCE☆61Updated 5 years ago
- Malware Sinkhole List in various formats☆102Updated 3 years ago
- Joystick is a tool that gives you the ability to transform the ATT&CK Evaluations data into concise views that brings forward the nuances…☆64Updated 2 years ago
- Black Hat EU 2018 - Don't Eat Spaghetti with a Spoon - An Analysis of the Practical Value of Threat Intelligence☆22Updated 6 years ago
- ☆35Updated 2 years ago
- Malicious actors often reuse code to deploy their malware, phishing website or CNC server. As a result, similiaries can be found on URLs …☆75Updated 2 years ago
- A CALDERA plugin☆71Updated 3 weeks ago
- A low interaction honeypot for the Cisco ASA component capable of detecting CVE-2018-0101, a DoS and remote code execution vulnerability.☆55Updated 7 years ago
- Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-2…☆98Updated 4 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆49Updated 2 years ago
- Tweettioc Splunk App☆20Updated 5 years ago
- A CALDERA plugin for ATT&CK Evaluations Round 1☆33Updated 2 years ago
- Toolset for research malware and Cobalt Strike beacons☆211Updated 9 months ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- Hfinger - fingerprinting HTTP requests☆139Updated 2 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆108Updated 4 years ago
- 威胁检测规则集☆15Updated 6 years ago
- ☆45Updated 3 years ago
- Python script to detect bluekeep vulnerability (CVE-2019-0708) with TLS/SSL and x509 support☆27Updated 6 years ago
- Analytics for Accounting logs from Network devices☆18Updated 4 years ago