freetaxii / libstix2
APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)
☆53Updated 3 months ago
Alternatives and similar repositories for libstix2:
Users that are interested in libstix2 are comparing it to the libraries listed below
- A Go implementation and parser for Sigma rules.☆86Updated 6 months ago
- A Go implementation of JARM☆119Updated 2 years ago
- gyp: A pure Go YARA parser☆105Updated last year
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 3 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 10 months ago
- Golang library that implements a sigma log rule parser and match engine.☆94Updated 8 months ago
- ☆164Updated 2 years ago
- Collect autorun records from running system☆61Updated 3 years ago
- A pure Go library for working with Structured Threat Information Expression (STIX™) version 2.x data☆23Updated 5 months ago
- Build a local copy of MITRE ATT&CK and CAPEC. Server mode for easy querying.☆32Updated this week
- Recog-Go: Pattern Recognition using Rapid7 Recog☆106Updated last year
- Golang Parser for Microsoft Event Logs☆101Updated 2 months ago
- simple YARA-based IOC scanner☆169Updated last month
- Go implementation of the Community ID flow hashing standard☆20Updated last week
- A Golang API for TheHive☆13Updated 4 years ago
- Go library for connecting to CertStream☆145Updated 2 years ago
- Go library for ETW (Event Tracing for Windows) events processing☆63Updated 2 years ago
- A cyber threat intelligence server based on TAXII 2 and written in Golang☆30Updated 5 years ago
- Tools for parsing rulesets using the exact grammar as YARA. Written in Go.☆83Updated 2 years ago
- Signature engine for all your logs☆167Updated last year
- Golang based web service to scan files with yara rules☆27Updated 7 years ago
- Golang parser for OLE files☆31Updated last week
- How to Zeek Sysmon Logs!☆102Updated 3 years ago
- suricata eve.json parser in Go☆14Updated 5 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆49Updated 2 years ago
- Import specific data sources into the Sigma generic and open signature format.☆77Updated 2 years ago
- Mapping NSM rules to MITRE ATT&CK☆70Updated 4 years ago
- Indicator Extractor☆138Updated 6 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆106Updated 7 years ago
- utmp file dumper, written in golang. Output to json or tsv or csv.☆32Updated last year