jtschichold / panwdbl
Simple block lists hub for PAN-OS DBL feature
☆35Updated 6 years ago
Alternatives and similar repositories for panwdbl:
Users that are interested in panwdbl are comparing it to the libraries listed below
- Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was …☆77Updated 7 years ago
- Scripts for Bro IDS and ELK Stack☆56Updated 9 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated 11 months ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 3 years ago
- WebUI of MineMeld☆43Updated last year
- ☆38Updated 6 years ago
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆153Updated 11 months ago
- ☆48Updated 4 years ago
- ☆140Updated 8 months ago
- Sysmon configuration☆66Updated 6 years ago
- Files from my Storm Center Articles☆17Updated last year
- Automatic firewall rule orchestator.☆83Updated 7 years ago
- Dashboards and loader for ROCK NSM dashboards☆48Updated last year
- Traceroute improved wrapper for CSIRT and CERT operators☆37Updated 4 months ago
- GPOs for client systems☆42Updated 5 years ago
- PowerShell Module for automating Tenable Nessus Vulnerability Scanner.☆88Updated 2 years ago
- This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.☆22Updated 7 years ago
- Network Appliance Backups in PowerShell☆29Updated 2 years ago
- Sysmon configuration file template with default high-quality event tracing☆17Updated 3 years ago
- Fetches multiple blacklists, formats, outputs to text file for use with Palo Alto firewalls (possibly others).☆13Updated 9 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 7 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 9 years ago
- Push "BAD" IPs/Networks into QRadar's "Remote Networks", tag them properly, and use them!☆18Updated 11 years ago
- This module is used to report phishing URLs to their WHOIS/RDAP abuse contact information.☆43Updated 7 years ago
- **BETA** A simple buildscript for network security monitoring on RHEL/CentOS☆31Updated 7 years ago
- The Bro/Zeek language cheat sheet☆51Updated 11 years ago
- Miscellaneous PowerShell scripts☆58Updated 5 years ago
- Integrate Zeek with Alienvault OTX☆25Updated 4 years ago
- Fortigate Log Parser☆16Updated last year