erichutchins / geoipsedLinks
Fast, inline geolocation decoration of IPv4 and IPv6 addresses written in Rust
☆29Updated 2 years ago
Alternatives and similar repositories for geoipsed
Users that are interested in geoipsed are comparing it to the libraries listed below
Sorting:
- A tool for studying JavaScript malware.☆15Updated last week
- NTFS file system specimens☆13Updated 2 years ago
- A document tagging library☆33Updated 10 months ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 4 years ago
- ☆24Updated 10 months ago
- ☆23Updated 2 years ago
- A cross platform forensic parser written in Rust!☆101Updated this week
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆55Updated this week
- A web scraper to create MISP events and reports☆17Updated 6 months ago
- Rust implementation of the DCSO Bloom filter☆29Updated 6 months ago
- Indicators of Normality☆11Updated 3 years ago
- lnk_parser is a full rust implementation to parse windows LNK files☆22Updated 6 months ago
- Python library to query various sources of threat intelligence for data on domains, file hashes, and IP addresses.☆31Updated 2 years ago
- Automate the regular transfer of AIS data into a MISP Server☆10Updated last year
- Hundred Days of Yara Challenge☆12Updated 3 years ago
- Parsers for common structures across windows formats.☆12Updated 2 years ago
- Alternative YARA scanning engine☆73Updated 3 years ago
- A triage data collection script for macOS☆28Updated 5 years ago
- Draugnet is a lightweight, open-source tool for anonymous cyber threat reporting. Built for the MISP ecosystem, it lets users submit and …☆20Updated 4 months ago
- Forensic framework to build tools that can be reused in multiple projects without changing anything☆31Updated 3 months ago
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Updated 3 years ago
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆34Updated 3 years ago
- Publicly shareable windows event log message data☆28Updated 6 years ago
- A Splunk Technology Add-on to forward filtered ETW events.☆30Updated 5 years ago
- YARI is an interactive debugger for YARA Language.☆90Updated 4 months ago
- Imphash-like calculation on Golang binaries☆49Updated 3 years ago
- WhiteBeam: Transparent endpoint security☆101Updated 2 years ago
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆128Updated 2 years ago
- SightingDB is a database for Sightings☆22Updated 2 years ago
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago