csirtgadgets / cif-v1
DEPRECATED USE v3!
☆59Updated 9 years ago
Alternatives and similar repositories for cif-v1:
Users that are interested in cif-v1 are comparing it to the libraries listed below
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 8 years ago
- ☆17Updated 6 years ago
- It's like a polaroid, but for domains☆24Updated 10 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 7 years ago
- python SDK for CIFv2☆13Updated 5 years ago
- CRITs IOC Visualization in Maltego☆28Updated 10 years ago
- Script for generating Bro intel files from pdf or html reports☆76Updated 9 years ago
- yara rules for crypto detection☆30Updated 10 years ago
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 10 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- A Python library for being a CND Batman....☆35Updated 9 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 10 years ago
- Passive DNS visualization and Passive DNS server toolkit☆35Updated 12 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Updated 6 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 8 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 9 years ago
- ☆85Updated 11 years ago
- Script for pulling events from a MISP database and converting them to Autofocus queries.☆13Updated 9 years ago
- Passive DNS V2☆62Updated 10 years ago
- Malware analysis using Docker project☆25Updated 8 years ago
- threat language parser☆60Updated 9 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- integrating bro into yara☆33Updated 10 years ago
- **BETA** A simple buildscript for network security monitoring on RHEL/CentOS☆31Updated 7 years ago
- Cli interface to threatcrowd.org☆19Updated 7 years ago
- API Tools☆27Updated 8 years ago