freetaxii / libstix2
APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)
☆52Updated 3 months ago
Alternatives and similar repositories for libstix2:
Users that are interested in libstix2 are comparing it to the libraries listed below
- A Go implementation and parser for Sigma rules.☆86Updated 6 months ago
- A Go implementation of JARM☆119Updated 2 years ago
- gyp: A pure Go YARA parser☆105Updated 11 months ago
- Go implementation of the Community ID flow hashing standard☆20Updated last month
- Build a local copy of MITRE ATT&CK and CAPEC. Server mode for easy querying.☆32Updated this week
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 10 months ago
- Golang library that implements a sigma log rule parser and match engine.☆94Updated 7 months ago
- A pure Go library for working with Structured Threat Information Expression (STIX ™) version 2.x data☆23Updated 5 months ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 3 years ago
- Collect autorun records from running system☆60Updated 3 years ago
- Recog-Go: Pattern Recognition using Rapid7 Recog☆106Updated last year
- A cyber threat intelligence server based on TAXII 2 and written in Golang☆30Updated 5 years ago
- SSDEEP hash lib in Golang☆106Updated 10 months ago
- ☆164Updated 2 years ago
- Go library for ETW (Event Tracing for Windows) events processing☆63Updated 2 years ago
- A Golang API for TheHive☆13Updated 4 years ago
- Golang Parser for Microsoft Event Logs☆101Updated last month
- simple YARA-based IOC scanner☆168Updated last month
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆87Updated 10 months ago
- Golang parser for OLE files☆31Updated 8 months ago
- CLI and Go package for fast, offline ASN lookups☆17Updated 2 weeks ago
- Import specific data sources into the Sigma generic and open signature format.☆77Updated 2 years ago
- Get started using Synapse Open-Source to start a Cortex and perform analysis within your area of expertise.☆40Updated 2 years ago
- Freki is a tool to manipulate packets in usermode using NFQUEUE and golang.☆58Updated 2 years ago
- suricata eve.json parser in Go☆14Updated 5 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆49Updated 2 years ago
- Signature engine for all your logs☆167Updated last year
- ☆38Updated 4 months ago
- Go Client for Suricata (Interacting via Socket)☆12Updated 4 years ago
- Mapping NSM rules to MITRE ATT&CK☆70Updated 4 years ago