doksu / TA-asngenLinks
ASN Lookup Generator for Splunk
☆10Updated last year
Alternatives and similar repositories for TA-asngen
Users that are interested in TA-asngen are comparing it to the libraries listed below
Sorting:
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 6 years ago
- ☆55Updated 3 years ago
- pan-stix☆19Updated 8 years ago
- InvestigationPlaybookSpec☆72Updated 8 years ago
- Integrate Zeek with Alienvault OTX☆25Updated 5 years ago
- Bro/Zeek integration with osquery☆94Updated 5 years ago
- first commit☆20Updated 2 months ago
- A set of templates for documenting threat intelligence☆75Updated 12 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- Docker container for MISP☆96Updated 7 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated 2 years ago
- ☆64Updated 3 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- misp-cloud - Cloud-ready images of MISP☆74Updated 3 years ago
- Splunk csv to KVStore ES Threat Intel☆11Updated 9 years ago
- Network Forensics Bro scripts & pcap samples☆63Updated 11 years ago
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆63Updated 2 years ago
- Web based analysis platform for use with the AWS_IR command line tool.☆17Updated 9 years ago
- A Splunk app to use MISP in background☆113Updated last month
- A python script to shift the timestamp on syslog data. Useful for forensicators combating time skew.☆21Updated 3 years ago
- automate your MISP installs☆68Updated 5 years ago
- Carbon Black Feeds☆73Updated 2 years ago
- MineMeld nodes for MISP☆19Updated last year
- Report Generation from the Carbon Black REST API☆15Updated 3 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- Coding examples for the OpenDNS Investigate API☆24Updated 6 years ago
- Salt States for Configuring the SIFT Workstation☆106Updated last week
- the fastest way to consume threat intelligence.☆31Updated 2 years ago
- scripts to configure the Splunk Universal Forwarder in a locked down state☆40Updated 6 years ago