johannestaas / rust-passivedns
Passivedns monitor implementation in Rust.
☆12Updated 8 years ago
Related projects ⓘ
Alternatives and complementary repositories for rust-passivedns
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆30Updated last year
- OpenDNS Graph Miner☆45Updated 7 years ago
- dns logger for passive dns collection☆42Updated 12 years ago
- SANS Hunting on the Cheap☆35Updated 8 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 6 months ago
- threat language parser☆60Updated 9 years ago
- It's like a polaroid, but for domains☆24Updated 9 years ago
- DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text fil…☆78Updated 9 months ago
- ☆12Updated 7 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 7 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 6 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 7 years ago
- Code for Rumal Backend that will interface with Thug Daemon☆11Updated 8 years ago
- Random scripts for log mining, intel gathering, network querying, and other incident response-ish activities☆16Updated 2 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 5 years ago
- Scumblr instructions with custom search providers for monitoring malicous content☆17Updated 7 years ago
- Gather and compile open source threat intelligence feeds.☆38Updated 2 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated last year
- Debian and Red Hat packaging for SIE DNS sensor☆15Updated last year
- SPL to lucene translator☆15Updated 9 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Implementation of Context-Graph algorithms for graph enrichment and querying.☆24Updated 9 years ago
- Threat Intelligence distribution☆30Updated 8 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- Meeting notes☆15Updated 8 years ago
- ARCHIVED ce1sus, a threat information database ARCHIVED☆28Updated 8 years ago
- A simple, but damn fast sinkhole☆63Updated 2 years ago