jasonish / suricata-trafficid.ARCHIVED
Application and service identification rules for Suricata
☆29Updated 2 years ago
Alternatives and similar repositories for suricata-trafficid.ARCHIVED:
Users that are interested in suricata-trafficid.ARCHIVED are comparing it to the libraries listed below
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆31Updated 5 years ago
- suricata IDS的规则,测试在用的,部分自写的规则视情况放出。☆18Updated 6 years ago
- ☆35Updated last year
- Rule sets for Sagan☆103Updated 4 years ago
- Snort rules☆35Updated 6 years ago
- ☆37Updated last year
- OpenFlow Honeypot☆23Updated 12 years ago
- Web service for scanning pcaps with snort☆109Updated 6 years ago
- Snort/Suricata DAQ module with DPDK patch☆11Updated last year
- The python client of 360 Netlab whois database☆14Updated 6 years ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- 一个HIDS agent端的demo☆17Updated 5 years ago
- ☆9Updated 8 years ago
- Templates for Kibana/Logstash to use with Suricata IDPS☆80Updated 9 years ago
- A dsniff project using bro☆10Updated 9 years ago
- How to Zeek Sysmon Logs!☆101Updated 3 years ago
- Quickly generate suricata rules for IOCs☆29Updated 4 years ago
- This is the C version of the StratosphereLinuxIPS. It is mainly used for integration with Snort and other IDSs.☆12Updated 8 years ago
- ☆36Updated 9 years ago
- 威胁检测规则集☆15Updated 5 years ago
- NMap XML decoding for logstash☆28Updated 2 years ago
- DockerFiles for Docker Containers☆16Updated 7 years ago
- ThreatHound is a threat intelligence query tool use for detecting potentially malicious IP or domains. It combines the MISP open source t…☆39Updated 5 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆43Updated 7 years ago
- TLS 技术原理与 1.0协议旁路解密实现方法☆26Updated 6 years ago
- Struts Apache 2 based honeypot as well as a detection module for Apache 2 servers☆71Updated 8 years ago
- ☆16Updated 7 years ago
- A dns server, small and cute. Use it to test web security such as dnslog and dns rebinding. it's kind of like ceye.io☆18Updated 3 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 11 months ago
- A tool to generate Snort rules based on public IP reputation data☆56Updated 11 years ago