geekscrapy / docker-snortLinks
Snort + Pulledpork + Websnort in Docker!
☆22Updated 4 years ago
Alternatives and similar repositories for docker-snort
Users that are interested in docker-snort are comparing it to the libraries listed below
Sorting:
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- Malware/IOC ingestion and processing engine☆109Updated 7 years ago
- Mass static malware analysis tool☆94Updated 3 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 3 years ago
- scripts to help beginners program in Bro☆21Updated 12 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Updated 4 years ago
- This repository contains all public indicators identified by 401trg during the course of our investigations. It also includes relevant ya…☆122Updated 4 years ago
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- An extensible honeypot framework☆95Updated 3 years ago
- Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...☆71Updated 6 years ago
- Network Forensics Bro scripts & pcap samples☆63Updated 11 years ago
- Python script to automatically create sigma rules from The hive observables☆25Updated 6 years ago
- An informational repo about hunting for adversaries in your IT environment.☆14Updated 8 years ago
- Simple Docker Honeypot server emulating small snippets of the Docker HTTP API☆33Updated 5 years ago
- A web-based tool to assist the work of the intuitive threat analysts.☆114Updated 7 years ago
- automate your MISP installs☆68Updated 5 years ago
- An ICAP Server with yara scanner for URL and content.☆58Updated last year
- This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.☆35Updated 6 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- Bluewall is a firewall framework designed for offensive and defensive cyber professionals.☆106Updated 6 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- Security Onion Elastic Stack☆46Updated 5 years ago
- ☆38Updated 7 years ago
- Bro Intel Feed Linter☆26Updated 6 years ago
- BTG's purpose is to make fast and efficient search on IOC☆71Updated 7 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 7 months ago
- SANS Hunting on the Cheap☆36Updated 9 years ago
- CuckooMX is a project to automate analysis of files transmitted over SMTP (using the Cuckoo sandbox)☆41Updated 13 years ago
- the fastest way to consume threat intelligence.☆31Updated 2 years ago
- Automated Memory Forensic☆34Updated 7 years ago