farsightsec / dnstable
encoding format, library, and utilities for passive DNS data
☆26Updated 7 months ago
Related projects ⓘ
Alternatives and complementary repositories for dnstable
- Debian and Red Hat packaging for SIE DNS sensor☆15Updated last year
- CRL Monitor - X.509 Certificate Revocation List monitoring and X.509/Subject caching☆33Updated 3 years ago
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆30Updated last year
- A content inspecting SMTP proxy☆17Updated 10 years ago
- Passive DNS Common Output Format☆36Updated 2 months ago
- Bro-IDS scripts☆50Updated 8 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 10 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Honeypot log processor to create OTX Pulse entries☆29Updated 10 months ago
- API to access the Redis database of a BGP Ranking instance.☆17Updated 6 years ago
- DNS traffic indexer and analyzer☆26Updated 10 years ago
- cuckoo-1.1 fork with suricata/moloch/clamav and other goodies☆23Updated 9 years ago
- Bro/Zeek integration with osquery☆95Updated 4 years ago
- Passive DNS visualization and Passive DNS server toolkit☆35Updated 12 years ago
- server for indexing and querying passive DNS observations☆44Updated 10 months ago
- ☆22Updated 6 years ago
- ☆28Updated 7 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 6 months ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 3 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 4 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- integrating bro into yara☆33Updated 9 years ago
- A Python implementation of the Community ID flow hashing standard☆23Updated 11 months ago
- ☆85Updated 11 years ago
- ☆15Updated 7 months ago
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated 10 months ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 7 years ago
- An ICAP Server with yara scanner for URL and content.☆57Updated 3 years ago