nccgroup / IP-reputation-snort-rule-generator
A tool to generate Snort rules based on public IP reputation data
☆56Updated 11 years ago
Alternatives and similar repositories for IP-reputation-snort-rule-generator:
Users that are interested in IP-reputation-snort-rule-generator are comparing it to the libraries listed below
- Extract files from network traffic with Zeek.☆101Updated 5 years ago
- ☆75Updated 3 years ago
- Aggregates security threats from a number of online sources, and outputs to Syslog CEF, Snort Signatures, Iptables rules, hosts.deny, etc…☆79Updated 9 years ago
- Scripts for Bro IDS and ELK Stack☆56Updated 9 years ago
- Various Bro scripts☆96Updated 8 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33Updated 8 years ago
- A Docker container for Moloch based on minimal Debian☆26Updated 9 years ago
- Malware/IOC ingestion and processing engine☆104Updated 6 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Credential Phish Analysis and Automation☆96Updated 6 years ago
- collection of bro and bash scripts that when run from the same directory on Linux distro with bro installed, will pull information such a…☆12Updated 9 years ago
- Cyber Intel Management☆48Updated 7 years ago
- ☆85Updated 11 years ago
- Manage VT Alerts☆62Updated 8 years ago
- Basic Maltego Transforms for looking up SSL certs and IP info from censys.io☆41Updated 8 years ago
- IOC (Indicator of Compromise) Extractor: a program to help extract IOCs from text files.☆135Updated 9 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- ☆22Updated 7 years ago
- ☆71Updated 3 years ago
- Alienvault Labs Projects Random Stuff☆79Updated 11 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 4 months ago
- Mitre chopshop network decoder framework☆30Updated 8 years ago
- Passive DNS V2☆61Updated 11 years ago
- malware-traffic-analysis.net PCAPs repository.☆35Updated 8 years ago
- Struts Apache 2 based honeypot as well as a detection module for Apache 2 servers☆71Updated 8 years ago
- TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs…☆150Updated 11 months ago
- integrating bro into yara☆33Updated 10 years ago
- a Malware/Threat Analyst Desktop☆89Updated 9 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- Some IR notes☆73Updated 8 years ago