markofu / pcaps
Public Repository of all Publicly Available Packet Captures that I've used or come across
☆178Updated 12 years ago
Alternatives and similar repositories for pcaps:
Users that are interested in pcaps are comparing it to the libraries listed below
- Extract files from network traffic with Zeek.☆101Updated 5 years ago
- ☆202Updated last year
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago
- a network packet capture compiler☆199Updated 2 years ago
- ☆168Updated 3 years ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆75Updated 7 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- GasPot Released at Blackhat 2015☆139Updated 11 months ago
- Snorpy is a python script the gives a Gui interface to help those new to snort create rules.☆62Updated 8 months ago
- Wireshark plugin to display Suricata analysis info☆93Updated 3 years ago
- CIF v3 -- the fastest way to consume threat intelligence☆182Updated 2 years ago
- TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs…☆150Updated 11 months ago
- CRITs Services Collection☆184Updated 3 years ago
- This repository contains all public indicators identified by 401trg during the course of our investigations. It also includes relevant ya…☆121Updated 4 years ago
- Honeynet Project generic authenticated datafeed protocol☆214Updated last year
- A modular Python application to pull intelligence about malicious files☆119Updated 4 years ago
- DGA Domains detection☆66Updated 7 years ago
- Evading Snort Intrusion Detection System.☆77Updated 3 years ago
- Tools to interact with APTnotes reporting/index.☆101Updated 4 years ago
- Spam Honeypot with Intelligent Virtual Analyzer☆137Updated 3 weeks ago
- 16,432 Free Yara rules created by☆383Updated 5 years ago
- Differential Analysis of Malware in Memory☆211Updated 8 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆123Updated 3 years ago
- IOC (Indicator of Compromise) Extractor: a program to help extract IOCs from text files.☆135Updated 9 years ago
- CASCADE Server☆268Updated 2 years ago
- A Python RESTful API framework for online malware analysis and threat intelligence services.☆369Updated 11 months ago
- Various Bro scripts☆96Updated 8 years ago
- Misc. Bro scripts☆63Updated 7 years ago
- User guide of MISP