jakewarren / snort-rule-generatorLinks
Quickly generate snort rules for IOCs
☆18Updated 9 years ago
Alternatives and similar repositories for snort-rule-generator
Users that are interested in snort-rule-generator are comparing it to the libraries listed below
Sorting:
- Scripts for Bro IDS and ELK Stack☆57Updated 9 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 7 years ago
- Python script to pull various IOCs from PDFs☆15Updated 10 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Aggregates security threats from a number of online sources, and outputs to Syslog CEF, Snort Signatures, Iptables rules, hosts.deny, etc…☆81Updated 9 years ago
- Cyber Intel Management☆48Updated 7 years ago
- ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a se…☆68Updated 10 years ago
- ☆85Updated 11 years ago
- **BETA** A simple buildscript for network security monitoring on RHEL/CentOS☆31Updated 8 years ago
- Bro scripts to be shared with the community☆110Updated 12 years ago
- ☆38Updated 6 years ago
- ☆24Updated 9 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- a Malware/Threat Analyst Desktop☆89Updated 9 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 8 years ago
- Just another tool to extract Indicator of compromise (ioc) from files☆29Updated 9 years ago
- The Intelligent Honey Net Project attempts to create actionable information from honeypots☆62Updated 9 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- Transforms for the AlienVault OTX service☆39Updated 8 years ago
- integrating bro into yara☆33Updated 10 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆48Updated 11 years ago
- ☆17Updated 7 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- Parse URLCrazy and dnstwist output and compare against previous runs to identify new typosquatted domains.☆52Updated 9 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- A collection of bro_scripts and signatures☆26Updated 6 years ago
- A collection of Bro scripts I've written☆40Updated 10 years ago
- Yara rules I've written☆10Updated 9 years ago