ivre / masscanned
Let's be scanned. A low-interaction honeypot focused on network scanners and bots. It integrates very well with IVRE to build a self-hosted alternative to GreyNoise.
☆115Updated this week
Alternatives and similar repositories for masscanned:
Users that are interested in masscanned are comparing it to the libraries listed below
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆139Updated 3 years ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆75Updated last year
- IOK (Indicator Of Kit) is an open source language and ruleset for detecting phishing threat actor tools and tactics☆168Updated 2 months ago
- Signature based honeypot detector tool written in Golang☆85Updated last month
- Login Pages Database forms a knowledge base on login pages related to malicious activities (C2 panels, phishing kits...).☆38Updated last year
- Web Application for domain name monitoring / alerting☆62Updated 5 months ago
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆146Updated 7 months ago
- SNIcat☆126Updated 3 years ago
- JA4TScan is an active TCP server fingerprinting tool.☆62Updated 4 months ago
- A minimalistic cross-platform malware scanner with non-blocking realtime filesystem monitoring using YARA rules.☆215Updated 2 years ago
- LZR quickly detects and fingerprints unexpected services running on unexpected ports.☆159Updated last month
- Signing-key abuse and update exploitation framework☆123Updated last month
- A repository for possible zgrab2 configurations☆25Updated 2 years ago
- CLI tool to quickly and efficiently bulk-download entries from a Certificate Transparency log☆27Updated last month
- How to setup a honeypot with an IDS, ELK and TLS traffic inspection☆154Updated 2 years ago
- This repository contains a comprehensive list of over 30k dynamic DNS domains as of 2024. The list is provided for informational purposes…☆88Updated 3 weeks ago
- Distributed network and vulnerability scanner☆44Updated 10 months ago
- reveal origins behind reverse proxies & hidden services 👀 🧅 💻☆28Updated last year
- NIST-based CVE lookup store and API powered by Rust.☆127Updated 2 months ago
- PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Pac…☆95Updated 3 years ago
- HASH (HTTP Agnostic Software Honeypot)☆133Updated 8 months ago
- ☆121Updated this week
- Citrix Scanner for CVE-2023-3519☆49Updated last year
- A suite of Volatility 3 plugins for memory forensics of Docker containers☆18Updated last year
- LOKI2 - Simple IOC and YARA Scanner☆84Updated 5 months ago
- A honeypot for the Log4Shell vulnerability (CVE-2021-44228).☆91Updated last month
- 🏴☠️💰 Another Ransomware gang tracker☆171Updated this week
- ☆55Updated 3 months ago
- WhiteBeam: Transparent endpoint security☆96Updated last year