opendxl / opendxl-environmentLinks
Pre-configured environment that supports the development and running of OpenDXL solutions
☆13Updated 4 years ago
Alternatives and similar repositories for opendxl-environment
Users that are interested in opendxl-environment are comparing it to the libraries listed below
Sorting:
- OpenDXL Broker is an open source version of a Data Exchange Layer (DXL) broker☆14Updated last year
- OpenDXL Console is a high-level web-based console for interacting with a DXL fabric☆11Updated 4 years ago
- Expandable Defensive Cyber Operations Platform☆43Updated 3 years ago
- Push "BAD" IPs/Networks into QRadar's "Remote Networks", tag them properly, and use them!☆18Updated 12 years ago
- Build Automated Machine Images for MISP☆29Updated 2 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 weeks ago
- Decision trees generated via Graphviz to inform pragmatic threat modelling.☆11Updated 4 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆54Updated last week
- WebUI of MineMeld☆43Updated 2 years ago
- Bro/Zeek integration with osquery☆94Updated 5 years ago
- A Terraform module for GRR: the distributed incident forensics and response framework☆51Updated 5 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- OCA-wide documentation shared by all sub-projects and repositories☆33Updated last year
- Zeek support for Community ID flow hashing.☆37Updated 2 years ago
- A platform to create, catalog and deploy tests for tools such as Gauntlt, AttackIQ and Metasploit.☆16Updated 9 years ago
- A python script to shift the timestamp on syslog data. Useful for forensicators combating time skew.☆21Updated 3 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated last year
- setup zeek, previously Bro IDS☆18Updated last week
- Zeek package for tracking long connections to report them before they have completed.☆31Updated 4 months ago
- A website and framework for testing NIDS detection☆57Updated 4 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- The Bro/Zeek language cheat sheet☆53Updated 12 years ago
- Bro script package to create JSON formatted logs to stream into data analysis systems.☆30Updated last year
- Tools to assist in forensicating docker☆84Updated 8 months ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆176Updated 4 years ago
- ☆55Updated 3 years ago
- Specifications used in the MISP project including MISP core format☆52Updated 2 weeks ago
- Dockerfiles for containerized osquery☆14Updated 8 years ago
- OASIS Cyber Threat Intelligence (CTI) TC Open Repository: Convert STIX 1.2 XML to STIX 2.x JSON☆52Updated last year