a-ray-grass is a yara module that provides support for DCSO-format bloom filters in yara. In the context of hashlookup, it allows quickly discard known files "pour séparer le grain de l'ivraie"
☆14Aug 19, 2022Updated 3 years ago
Alternatives and similar repositories for a-ray-grass
Users that are interested in a-ray-grass are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A web scraper to create MISP events and reports☆17Jun 30, 2025Updated 8 months ago
- Private Search Set (PSS) is an extension to standard Bloom filter or a standalone hash file to describe and share private set.☆16Jan 10, 2025Updated last year
- Passive DNS server interface compliant to "Common Output Format"☆10Sep 19, 2016Updated 9 years ago
- Synapse Rapid Power-up for SinkDB☆11Jun 24, 2025Updated 8 months ago
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆128Sep 24, 2023Updated 2 years ago
- Threat Detection Rules (Snort/Sigma/Yara)☆14Jan 23, 2024Updated 2 years ago
- Generation of STIX2 compliant entities for Maltego☆20Oct 4, 2023Updated 2 years ago
- Integration between MISP platform and McAfee MVISION EDR☆14Mar 14, 2022Updated 4 years ago
- Passive Bitcoin Project☆10Aug 10, 2015Updated 10 years ago
- This repository is a part of GSoC Project 2019 which intends to add the macOS support for Cuckoo Sandbox. This repository helps setting u…☆11Aug 26, 2019Updated 6 years ago
- Security diagnostic quick start guide. Identifying the best measures and establishing specific security procedures for your organization.☆11May 29, 2019Updated 6 years ago
- Rust implementation of the DCSO Bloom filter☆29Jul 15, 2025Updated 8 months ago
- Golang Library to interact with your MISP instance☆22Sep 12, 2019Updated 6 years ago
- Incident Notification Platform by @NC3-LU☆11Updated this week
- Script to pull newly-registered domains and check for similarity against a provided word list.☆13Aug 2, 2020Updated 5 years ago
- Automatically exported from code.google.com/p/dumbpig☆12Sep 5, 2018Updated 7 years ago
- A Ghidra extension for reverse-engineering macOS binaries.☆19Jan 13, 2025Updated last year
- A collection of typical false positive indicators☆56Dec 5, 2020Updated 5 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Nov 9, 2022Updated 3 years ago
- A Python implementation of our efficient Bloom filter library.☆29Feb 27, 2020Updated 6 years ago
- ☆44Jul 11, 2025Updated 8 months ago
- Alternative YARA scanning engine☆73Aug 23, 2022Updated 3 years ago
- Run Sigma detection rules on logs from the new MacOS EndpointSecurity Framework☆22Jan 22, 2021Updated 5 years ago
- Repository to provide files related to our blog articles.☆16May 26, 2025Updated 9 months ago
- A vulnerability assessment tool for system models☆13Oct 1, 2021Updated 4 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆17Apr 11, 2024Updated last year
- Automatically sends pin to programs getting a pin via pin-entry. This is sometimes necessary.☆27Feb 18, 2013Updated 13 years ago
- nftables firewall script☆13Sep 18, 2023Updated 2 years ago
- ☆14May 30, 2018Updated 7 years ago
- Very loud vBulletin exploit☆14Aug 12, 2020Updated 5 years ago
- Python client and module for Vulnerability-Lookup.☆14Dec 9, 2025Updated 3 months ago
- Fast lookup server for NSRL and other hash database used in digital forensic☆49Jan 26, 2026Updated last month
- MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indi…☆15Dec 24, 2023Updated 2 years ago
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆12Aug 14, 2025Updated 7 months ago
- RSS to email script☆11Jul 27, 2012Updated 13 years ago
- ☆24Sep 28, 2022Updated 3 years ago
- Transform dumped executable memory back into an identical match from disk. Use network or local database to de-locate relocated binaries…☆12Jan 10, 2016Updated 10 years ago
- The CRATOS proxy API integrates with your MISP instance and allows to extract indicators that can be consumed by security components such…☆13Sep 21, 2025Updated 6 months ago
- eBPF Sockmap Proxy☆16Mar 5, 2022Updated 4 years ago