joesecurity / Joe-Sandbox-BroLinks
JoeSandbox-Bro is a simple bro script which extracts files from your internet connection and analyzes them automatically on Joe Sandbox
☆45Updated 6 years ago
Alternatives and similar repositories for Joe-Sandbox-Bro
Users that are interested in Joe-Sandbox-Bro are comparing it to the libraries listed below
Sorting:
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 5 years ago
- Malware/IOC ingestion and processing engine☆107Updated 7 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 5 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆41Updated 5 years ago
- Bro PCAP Processing and Tagging API☆28Updated 8 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 8 years ago
- ☆27Updated 7 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 11 months ago
- Passive DNS V2☆60Updated 11 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆24Updated 2 years ago
- IOCs for CRASHOVERRIDE malware framework☆27Updated 8 years ago
- A python script to query the MITRE ATT&CK API for tactics, techniques, mitigations, & detection methods for specific threat groups.☆67Updated 6 years ago
- BTG's purpose is to make fast and efficient search on IOC☆71Updated 6 years ago
- Fix acquired .evt - Windows Event Log files (Forensics)☆19Updated 9 years ago
- Credential Phish Analysis and Automation☆97Updated 7 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆48Updated 8 years ago
- A short and small memory forensics helper.☆52Updated 8 years ago
- An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk☆23Updated 7 years ago
- Passive Network Audit Framework☆32Updated 7 years ago
- Process HTTP Pcaps With YARA☆108Updated 12 years ago
- Basic Maltego Transforms for looking up SSL certs and IP info from censys.io☆41Updated 8 years ago
- A collection of Python utilities for use in scripts related to working with "indicators of compromise" (IOCs).☆17Updated 6 years ago
- Ragpicker is a Plugin based malware crawler with pre-analysis and reporting functionalities. Use this tool if you are testing antivirus p…☆93Updated 10 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33Updated 9 years ago
- A Heroku-based web honeypot that can be used to create and monitor fake HTTP endpoints (i.e. honeytokens).☆64Updated 6 years ago
- Automated install scripts for Cuckoo sandbox☆38Updated 7 years ago
- Sysmon config for both Windows and Linux Devices. Windows one is a bit dated☆56Updated last year
- Scan web server for known webshell names and responses☆50Updated 9 years ago
- ☆22Updated 7 years ago
- Modular tool to test exfiltration techniques.☆37Updated 8 years ago