hanzhang0116 / BotDigger
Detecting DGA bots in a single network using DNS traffic
☆26Updated 7 years ago
Alternatives and similar repositories for BotDigger:
Users that are interested in BotDigger are comparing it to the libraries listed below
- The stratosphere testing framework is mean to help in the researching and verification of the behavioral models used by the Stratoshpere …☆50Updated 7 years ago
- ☆75Updated 3 years ago
- DNSDB query scripts☆75Updated 5 years ago
- Passive DNS V2☆61Updated 11 years ago
- DGA Domains detection☆66Updated 7 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- Various Bro scripts☆96Updated 8 years ago
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN).☆107Updated last year
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Utilities and scripts for bro-ids☆22Updated 11 years ago
- ☆71Updated 3 years ago
- Analysis scripts for the Bro Intrusion Detection System☆58Updated 11 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 9 years ago
- Passive DNS collection using Zeek☆182Updated last year
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Scripts for Bro IDS and ELK Stack☆57Updated 9 years ago
- A collection of Bro scripts I've written☆40Updated 9 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 7 years ago
- QRadio ~ Best Threat Intelligence Radio ~ Tune In!☆96Updated 8 years ago
- Web service for scanning pcaps with snort☆109Updated 6 years ago
- Extract files from network traffic with Zeek.☆101Updated 5 years ago
- ☆85Updated 11 years ago
- Flow-based SSH intrusion detection system (NfSen plugin)☆41Updated 9 years ago
- Ops-Trust Platform - Portal☆21Updated 8 years ago
- collection of bro and bash scripts that when run from the same directory on Linux distro with bro installed, will pull information such a…☆12Updated 9 years ago
- Passive DNS visualization and Passive DNS server toolkit☆35Updated 13 years ago
- A Framework for managing Cyber Threat Intelligence.☆5Updated 7 years ago
- YALIH (Yet Another Low Interaction Honeyclient) is a low Interaction Client honeypot designed to detect malicious websites through signat…☆68Updated 5 years ago
- Bro Intel Feed Linter☆26Updated 5 years ago