jayjacobs / dga
Classifier to separate legitimate domains from those generated by a domain generating algorithm (DGA).
☆41Updated 8 years ago
Alternatives and similar repositories for dga:
Users that are interested in dga are comparing it to the libraries listed below
- Threat Intelligence Quotient Test - Dataviz and Statistical Analysis of TI feeds☆174Updated 9 years ago
- DNSDB query scripts☆75Updated 5 years ago
- Sweet, sweet, secrepo.com html.☆131Updated 3 years ago
- AMICO - Accurate Behavior-Based Detection of Malware Downloads☆31Updated 7 years ago
- ☆12Updated 7 years ago
- A series of labs that will help users apply various data science techniques to security related data.☆132Updated 10 years ago
- Threatelligence is a simple cyber threat intelligence feed collector, using Elasticsearch, Kibana and Python to automatically collect int…☆148Updated 10 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 9 years ago
- SANS Hunting on the Cheap☆35Updated 9 years ago
- QRadio ~ Best Threat Intelligence Radio ~ Tune In!☆96Updated 8 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- Gather and compile open source threat intelligence feeds.☆39Updated 3 years ago
- DGA Domains detection☆66Updated 7 years ago
- Useful tools for working with the PassiveTotal API in R☆13Updated 9 years ago
- Detection of malware using dynamic behavior and Windows audit logs☆77Updated 9 years ago
- DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text fil…☆77Updated last year
- Analyze and Visualize Data from Modern Honey Network Servers with R☆15Updated 9 years ago
- Passive DNS V2☆61Updated 11 years ago
- A collection of known Domain Generation Algorithms☆66Updated 9 years ago
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆29Updated 2 years ago
- Pivotable Reverse WhoIs / PDNS Fusion with Registrant Tracking & Alerting plus API for automated queries (JSON/CSV/TXT)☆159Updated 3 years ago
- threat language parser☆60Updated 10 years ago
- ☆24Updated 9 years ago
- integrating bro into yara☆33Updated 10 years ago
- Honeypot log processor to create OTX Pulse entries☆28Updated last year
- Tool to extract indicators of compromise from security reports in PDF format☆34Updated 9 years ago
- Dockerized REST service to look up URLs in Google Safe Browsing v4 API☆77Updated 3 years ago
- DGA Domain Detection using Bigram Frequency Analysis☆54Updated 7 years ago
- Cyber Threat Intelligence Feeds☆95Updated 8 years ago
- Malware Classifier From Network Captures☆82Updated 8 years ago