jayjacobs / dga
Classifier to separate legitimate domains from those generated by a domain generating algorithm (DGA).
☆41Updated 8 years ago
Alternatives and similar repositories for dga:
Users that are interested in dga are comparing it to the libraries listed below
- Threat Intelligence Quotient Test - Dataviz and Statistical Analysis of TI feeds☆173Updated 9 years ago
- DNSDB query scripts☆75Updated 5 years ago
- DGA Domains detection☆63Updated 6 years ago
- Sweet, sweet, secrepo.com html.☆131Updated 3 years ago
- QRadio ~ Best Threat Intelligence Radio ~ Tune In!☆96Updated 8 years ago
- ☆12Updated 7 years ago
- DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text fil…☆77Updated last year
- DGA Domain Detection using Bigram Frequency Analysis☆54Updated 7 years ago
- Gather and compile open source threat intelligence feeds.☆39Updated 3 years ago
- A series of labs that will help users apply various data science techniques to security related data.☆132Updated 9 years ago
- Useful tools for working with the PassiveTotal API in R☆14Updated 8 years ago
- Threatelligence is a simple cyber threat intelligence feed collector, using Elasticsearch, Kibana and Python to automatically collect int…☆145Updated 10 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 8 years ago
- AMICO - Accurate Behavior-Based Detection of Malware Downloads☆31Updated 7 years ago
- Passive DNS V2☆62Updated 10 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 5 years ago
- ☆24Updated 8 years ago
- Imports Alienvault OTX pulses to a MISP instance☆52Updated 3 years ago
- TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs…☆149Updated 9 months ago
- A collection of "network intelligence" utilities for R. ASN info, IP reputation, etc.☆39Updated 10 years ago
- Extract files from network traffic with Zeek.☆100Updated 4 years ago
- Cyber Threat Intelligence Feeds☆92Updated 8 years ago
- threat language parser☆60Updated 9 years ago
- Threat Intelligence APIs☆276Updated last year
- Malware/IOC ingestion and processing engine☆104Updated 6 years ago
- Pivotable Reverse WhoIs / PDNS Fusion with Registrant Tracking & Alerting plus API for automated queries (JSON/CSV/TXT)☆159Updated 3 years ago
- SANS Hunting on the Cheap☆35Updated 8 years ago
- A collection of known Domain Generation Algorithms☆66Updated 8 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- Bro-IDS scripts☆50Updated 8 years ago