mmguero-dev / Malcolm-PCAPLinks
This repository has been archived in favor of https://github.com/idaholab/Malcolm-Test-Artifacts
☆38Updated 9 months ago
Alternatives and similar repositories for Malcolm-PCAP
Users that are interested in Malcolm-PCAP are comparing it to the libraries listed below
Sorting:
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆37Updated 3 years ago
- Specifications used in the MISP project including MISP core format☆52Updated 3 months ago
- This repository includes a mapping table and a reference process that allows converting between STIX 2.1 Course of Action objects that ma…☆16Updated 3 years ago
- MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats☆55Updated this week
- A collection of my public YARA signatures for various malware families☆30Updated last year
- A STIX 2.1 Extension Definition for the Course of Action (COA) object type. The nested property extension allows a COA to share machine-r…☆23Updated last year
- Converting data from services like Censys and Shodan to a common data model☆50Updated 3 months ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 4 months ago
- Assemblyline 4 Malware detonation service (Cuckoo)☆17Updated last year
- Get started using Synapse Open-Source to start a Cortex and perform analysis within your area of expertise.☆48Updated 3 years ago
- A new Cyber Threat Intelligence Capability Maturity Model (CTI-CMM) to empower your team and create lasting value. Inspired by Industry N…☆40Updated 5 months ago
- Caldera plugin to deploy "humans" to emulate user behavior on systems☆28Updated last year
- Industrial Control Systems Network Protocol Parsers☆179Updated last month
- A collection of tips for using MISP.☆74Updated 9 months ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 4 years ago
- Presentation Slides and Resources☆15Updated last year
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆66Updated 2 years ago
- Augmentation to Machine Readable CTI☆34Updated 3 weeks ago
- PowerShell script for hardening GE digital CIMPLICITY servers☆23Updated 4 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆35Updated 3 weeks ago
- ☆53Updated 3 years ago
- Incident Response Network Tools☆24Updated 4 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indi…☆15Updated last year
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- ICS/OT related Wireshark profiles + adding some other (IT or OT related) Open Source Wireshark Profiles☆17Updated 6 months ago
- Python based CLI for MalwareBazaar☆38Updated 2 months ago
- YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.☆27Updated 3 years ago
- ☆11Updated 4 years ago