doksu / TA-asngenLinks
ASN Lookup Generator for Splunk
☆10Updated last year
Alternatives and similar repositories for TA-asngen
Users that are interested in TA-asngen are comparing it to the libraries listed below
Sorting:
- InvestigationPlaybookSpec☆72Updated 7 years ago
- ☆55Updated 3 years ago
- scripts to configure the Splunk Universal Forwarder in a locked down state☆40Updated 6 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- ☆38Updated 6 years ago
- Carbon Black Feeds☆72Updated 2 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- first commit☆20Updated last year
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Command line interface to Carbon Black Response☆38Updated 5 years ago
- Allows for MAC address to vendor mapping in Splunk☆16Updated last year
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Updated 8 years ago
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated last year
- pan-stix☆19Updated 7 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 9 years ago
- the fastest way to consume threat intelligence.☆29Updated 2 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Virustotal Lookup filter for Logstash☆16Updated 8 years ago
- ☆23Updated 5 years ago
- Deploy and maintain Symon through the Splunk Deployment Sever☆31Updated 4 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- Web based analysis platform for use with the AWS_IR command line tool.☆17Updated 8 years ago
- Splunk csv to KVStore ES Threat Intel☆11Updated 8 years ago
- Sysmon Splunk App☆47Updated 6 years ago
- ☆48Updated 9 years ago
- automate your MISP installs☆68Updated 4 years ago
- Docker container for MISP☆96Updated 6 years ago
- Analyze binaries collected in VMware Carbon Black EDR against Yara rules.☆38Updated 2 years ago
- A Splunk app to use MISP in background☆110Updated this week
- Just another tool to extract Indicator of compromise (ioc) from files☆29Updated 9 years ago