grapl-security / grapl-analyzersLinks
Hosted analyzers built for Grapl
☆14Updated 2 years ago
Alternatives and similar repositories for grapl-analyzers
Users that are interested in grapl-analyzers are comparing it to the libraries listed below
Sorting:
- Web based analysis platform for use with the AWS_IR command line tool.☆17Updated 9 years ago
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Updated 4 years ago
- Cuckoo Sandbox is an automated dynamic malware analysis system☆10Updated 4 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Updated 7 years ago
- The plugin repository for Honeycomb, the honeypot framework by Cymmetria☆26Updated last year
- CyCAT.org taxonomies☆15Updated 4 years ago
- ☆18Updated 2 years ago
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated 2 months ago
- Materials for the BSides NoVA/Charleston 2018 Bro Workshop☆14Updated 2 months ago
- Potiron - Normalize, Index and Visualize Network Capture☆88Updated 6 years ago
- Provide a shell like interface by utilizing osquery's distributed API☆81Updated 5 years ago
- OpenDXL Broker is an open source version of a Data Exchange Layer (DXL) broker☆14Updated last year
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 7 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆102Updated last month
- Bluehat 2018 Graphs for Security Workshop☆42Updated 6 years ago
- ☆35Updated 4 years ago
- ☆20Updated 5 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- Specifications used in the MISP project including MISP core format☆51Updated last month
- Use Markov Chains to obfuscate data as other data☆54Updated 9 years ago
- Endpoint monitoring stack.☆19Updated 9 years ago
- Python script to automatically create sigma rules from The hive observables☆25Updated 6 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 4 years ago
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆48Updated 3 years ago
- Things to know when DFIR occurs near a vault deployment.☆43Updated 7 years ago
- Container for assorted volatility plugins.☆23Updated 11 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 8 years ago
- Simple SYSLOG client in Go☆22Updated 2 months ago