mrdraper / Packet2Snort
A Python script that generates Snort IDS rules from network packets
☆25Updated 7 years ago
Alternatives and similar repositories for Packet2Snort
Users that are interested in Packet2Snort are comparing it to the libraries listed below
Sorting:
- Evading Snort Intrusion Detection System.☆77Updated 3 years ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆76Updated 7 years ago
- Web service for scanning pcaps with snort☆109Updated 6 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆103Updated 3 years ago
- Extract files from network traffic with Zeek.☆101Updated 5 years ago
- Data sets and examples for Jask Labs Blackhat 2017 Handout: Top 10 Machine Learning Cyber Security Use Cases☆32Updated 7 years ago
- A tool to generate Snort rules based on public IP reputation data☆56Updated 11 years ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- Pcap (capture file) Analysis Toolkit(v.1)☆105Updated 8 years ago
- A web-based tool to assist the work of the intuitive threat analysts.☆113Updated 6 years ago
- A completely automated anomaly detector Zeek network flows files (conn.log).☆78Updated 9 months ago
- The stratosphere testing framework is mean to help in the researching and verification of the behavioral models used by the Stratoshpere …☆50Updated 7 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Snorpy is a python script the gives a Gui interface to help those new to snort create rules.☆62Updated 8 months ago
- Misc. Bro scripts☆64Updated 7 years ago
- Wireshark plugin to display Suricata analysis info☆94Updated 3 years ago
- A collection of resources for security data☆41Updated 7 years ago
- Sniffles: Packet Capture Generator for IDS and Regular Expression Evaluation☆63Updated 4 years ago
- Maltese - Malware Traffic Emulator☆26Updated 8 years ago
- This is an open source Snort rules repository☆30Updated 2 years ago
- Detect cryptocurrency mining traffic with Zeek.☆46Updated 4 years ago
- malware-traffic-analysis.net PCAPs repository.☆35Updated 8 years ago
- a network packet capture compiler☆199Updated 3 years ago
- Malware/IOC ingestion and processing engine☆105Updated 6 years ago
- Aggregates security threats from a number of online sources, and outputs to Syslog CEF, Snort Signatures, Iptables rules, hosts.deny, etc…☆79Updated 9 years ago
- A repository for OSSEC rules and decoders☆54Updated last year
- ☆42Updated 2 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Updated 3 years ago
- Passive Network Audit Framework☆32Updated 6 years ago
- Ready to run scripts for network analysis☆88Updated last month