Look into EDR events from network
☆25Nov 20, 2025Updated 6 months ago
Alternatives and similar repositories for pikksilm
Users that are interested in pikksilm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆13Feb 6, 2018Updated 8 years ago
- A Lua helper library for creating network protocol dissectors☆13Nov 26, 2020Updated 5 years ago
- Set of scripts to index PCAP files and retrieve packets☆14Sep 10, 2015Updated 10 years ago
- Qakbot Registry Key Configuration Decryptor☆14Dec 20, 2021Updated 4 years ago
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A prototype GreyNoise integration for FluentBit with Lua scripts.☆11Feb 11, 2025Updated last year
- Bring Your Own Mitre Att&ck © Matrix !☆13Oct 19, 2023Updated 2 years ago
- A test case runner for Sigma rules☆14Aug 14, 2024Updated last year
- Jupyter Notebooks for Cyber Threat Intelligence☆35Sep 14, 2023Updated 2 years ago
- ☆42Sep 16, 2022Updated 3 years ago
- Custom Splunk search command to reconstruct a pstree from Sysmon process creation events (EventCode 1)☆24Mar 30, 2026Updated 2 months ago
- This repository contains generated contextual data utilized by pyattck.☆19Mar 3, 2025Updated last year
- ☆33Feb 26, 2022Updated 4 years ago
- A few XDR Scripts☆23Mar 19, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆86May 25, 2026Updated 3 weeks ago
- ☆16Aug 29, 2025Updated 9 months ago
- A CALDERA Plugin Template☆21May 27, 2026Updated 3 weeks ago
- Basic c2-matrix analysis enviroment using Suricata + Wazuh + Elastic stack☆13Apr 18, 2020Updated 6 years ago
- Threat Simulator for Enterprise Networks☆14May 14, 2022Updated 4 years ago
- Proof of Concept for CVE-2023-23397 in Python☆25Mar 21, 2023Updated 3 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Nov 9, 2022Updated 3 years ago
- 🐾Dogwalk PoC (using diagcab file to obtain RCE on windows)☆76Aug 11, 2022Updated 3 years ago
- Create a cool process tree like https://twitter.com/ACEResponder.☆35Mar 1, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- An experimental Velociraptor implementation using cloud infrastructure☆26Dec 2, 2025Updated 6 months ago
- Detection Ideas & Rules repository.☆179Sep 10, 2021Updated 4 years ago
- Windows login backdoor diagnostic tool☆11Apr 2, 2017Updated 9 years ago
- VTC - Velociraptor Timeline Creator☆19May 15, 2024Updated 2 years ago
- ☆13Aug 11, 2018Updated 7 years ago
- A starter-kit for a source-controlled, CLI-based osquery management workflow.☆30Jun 1, 2018Updated 8 years ago
- Sample files for Control Things Platform☆43Mar 5, 2026Updated 3 months ago
- Collect autorun records from running system☆62Jan 21, 2022Updated 4 years ago
- Install and configure user mode auditd tools☆34Apr 17, 2026Updated 2 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- This repository contains OpenIOC rules to aid in hunting for indicators of compromise and TTPs focused on Advanced Persistent Threat grou…☆26Oct 3, 2023Updated 2 years ago
- Repository for Cortex XDR and Cortex XSIAM XQL queries and more!☆46Jun 7, 2024Updated 2 years ago
- OwlH Master API☆24Apr 27, 2025Updated last year
- Klara docker compose☆11May 19, 2020Updated 6 years ago
- Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, S…☆16Jun 15, 2021Updated 5 years ago
- ☆43May 22, 2021Updated 5 years ago
- ☆11Dec 8, 2023Updated 2 years ago