farsightsec / dnstable
encoding format, library, and utilities for passive DNS data
☆26Updated 11 months ago
Alternatives and similar repositories for dnstable:
Users that are interested in dnstable are comparing it to the libraries listed below
- Passive DNS Common Output Format☆36Updated 6 months ago
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆30Updated 2 years ago
- Debian and Red Hat packaging for SIE DNS sensor☆15Updated last year
- Bro-IDS scripts☆50Updated 8 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 9 months ago
- scan-detection policies for bro☆15Updated last month
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- ☆28Updated 8 years ago
- Passive DNS V2☆62Updated 10 years ago
- Honeypot log processor to create OTX Pulse entries☆29Updated last year
- integrating bro into yara☆33Updated 10 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text fil…☆77Updated last year
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 8 years ago
- cuckoo-1.1 fork with suricata/moloch/clamav and other goodies☆23Updated 10 years ago
- ☆75Updated 3 years ago
- ☆85Updated 11 years ago
- A program that uses xapian to index the flat file databases used by nfdump or flow-tools☆36Updated 6 years ago
- Malware Classifier From Network Captures☆82Updated 8 years ago
- YETI is a TAXII implementation☆46Updated 5 years ago
- CRL Monitor - X.509 Certificate Revocation List monitoring and X.509/Subject caching☆34Updated 3 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆16Updated 10 months ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- ☆15Updated 10 months ago
- Connectors for the Zeek NetControl framework☆19Updated 3 weeks ago
- server for indexing and querying passive DNS observations☆45Updated last year
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN).☆105Updated last year
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- ☆23Updated 4 years ago