geekscrapy / docker-snortLinks
Snort + Pulledpork + Websnort in Docker!
☆22Updated 4 years ago
Alternatives and similar repositories for docker-snort
Users that are interested in docker-snort are comparing it to the libraries listed below
Sorting:
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...☆71Updated 6 years ago
- automate your MISP installs☆68Updated 5 years ago
- Python script to automatically create sigma rules from The hive observables☆25Updated 6 years ago
- Mass static malware analysis tool☆94Updated 3 years ago
- A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.☆14Updated 7 years ago
- Security Onion Elastic Stack☆46Updated 5 years ago
- Public rules and samples for various automations through LimaCharlie.io☆14Updated 4 years ago
- Automated Memory Forensic☆34Updated 7 years ago
- Bluewall is a firewall framework designed for offensive and defensive cyber professionals.☆106Updated 6 years ago
- This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.☆35Updated 6 years ago
- ☆52Updated 7 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Updated 4 years ago
- pollen - A command-line tool for interacting with TheHive☆36Updated 6 years ago
- Malware/IOC ingestion and processing engine☆109Updated 7 years ago
- Simple Docker Honeypot server emulating small snippets of the Docker HTTP API☆33Updated 5 years ago
- Passive Network Audit Framework☆32Updated 7 years ago
- A python script to query the MITRE ATT&CK API for tactics, techniques, mitigations, & detection methods for specific threat groups.☆67Updated 7 years ago
- A web-based tool to assist the work of the intuitive threat analysts.☆114Updated 7 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆41Updated 5 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Updated 8 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 10 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- Network Forensics Bro scripts & pcap samples☆63Updated 11 years ago
- A low interaction honeypot for the Cisco ASA component capable of detecting CVE-2018-0101, a DoS and remote code execution vulnerability.☆57Updated 7 years ago
- The Fastest way to consume Threat Intel☆26Updated 3 years ago
- Deploy MISP Project software with Vagrant.☆45Updated 5 years ago
- scripts to help beginners program in Bro☆21Updated 12 years ago
- the fastest way to consume threat intelligence.☆31Updated 2 years ago
- The Intelligent Honey Net Project attempts to create actionable information from honeypots☆64Updated 10 years ago