ktneely / ir-scriptsLinks
Random scripts for log mining, intel gathering, network querying, and other incident response-ish activities
☆16Updated 3 years ago
Alternatives and similar repositories for ir-scripts
Users that are interested in ir-scripts are comparing it to the libraries listed below
Sorting:
- CRITs IOC Visualization in Maltego☆28Updated 11 years ago
- Threat Intelligence distribution☆31Updated 10 years ago
- Parse a report and import the events into MISP☆29Updated 10 years ago
- A set of Maltego transforms for VirusTotal Public API v2.0. This set has the added functionality of caching queries on a daily basis to s…☆84Updated 10 years ago
- Some IR notes☆73Updated 9 years ago
- threat language parser☆60Updated 10 years ago
- Python script to pull various IOCs from PDFs☆15Updated 11 years ago
- Just another tool to extract Indicator of compromise (ioc) from files☆29Updated 10 years ago
- ARCHIVED ce1sus, a threat information database ARCHIVED☆28Updated 10 years ago
- a Malware/Threat Analyst Desktop☆89Updated 10 years ago
- Extract information from MISP via the API☆16Updated 9 years ago
- Python script that gets IOC from MISP and converts it into BRO intel files.☆13Updated 9 years ago
- ☆17Updated 8 years ago
- Cyber Intel Management☆50Updated 7 years ago
- Manage VT Alerts☆62Updated 9 years ago
- A browser extension that seamlessly integrates your yara match notifications into VirusTotal Intelligence.☆17Updated 10 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- A set of templates for documenting threat intelligence☆75Updated 12 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 10 years ago
- ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a se…☆69Updated 10 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- integrating bro into yara☆33Updated 11 years ago
- Network Forensics Bro scripts & pcap samples☆63Updated 11 years ago
- Log Examination Tool☆27Updated 9 years ago
- Maltego Transform to put entities into MISP events☆28Updated 4 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 8 years ago
- An ICAP Server with yara scanner for URL and content.☆58Updated last year
- Some dfir stuff☆30Updated 3 years ago
- Malformity is a Maltego project based on the Canari framework for malicious binary and infrastructure research.☆115Updated 9 years ago
- Basic Maltego Transforms for looking up SSL certs and IP info from censys.io☆41Updated 8 years ago