runZeroInc / recog
Pattern recognition for hosts, services, and content
☆13Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for recog
- Yara rules for malicious javascript files from public repositories or written by me.☆12Updated 3 years ago
- ☆22Updated 3 years ago
- Analytics for Accounting logs from Network devices☆16Updated 3 years ago
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆31Updated last month
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- Setting up a training environment for MISP☆11Updated last year
- Scan blob files for sensitive content☆11Updated 2 years ago
- A CLI tool for querying passive DNS services☆41Updated 11 months ago
- CyCAT.org API back-end server including crawlers☆30Updated last year
- A rogue DNS detector☆23Updated last year
- Indicator of Compromise Scanner for CVE-2019-19781☆92Updated 4 years ago
- The FastIR Server is a Web server to schedule FastIR Collector forensics collect thanks to the FastIR Agent☆12Updated 7 years ago
- Ansible role for security standards compliance☆13Updated 5 years ago
- ☆15Updated 2 years ago
- A Simple Log4j Indicator of Compromise Linux Detector☆14Updated 2 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- ☆14Updated 6 years ago
- Collection of my slide decks & conference videos☆27Updated 4 years ago
- Exfiltration based on custom X509 certificates☆26Updated 8 months ago
- HoneyDB Python Module☆13Updated 9 months ago
- Exploit for win10 SMB3.1☆16Updated 4 years ago
- Used to manage burp extensions that I find useful.☆11Updated 2 years ago
- Paper, data and code from Investigating Potential Security Vulnerability Manifestation through Various Analyses & Inferences Regarding In…☆18Updated 3 years ago
- ☆15Updated 6 years ago
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Updated 4 years ago
- Threat hunting with EQL and Bro. This repo contains modifications to EQL and EQLLib to use BRO logs.☆8Updated 5 years ago
- Declare and keep up a rogue default-gateway in Cisco's HSRP default configuration☆17Updated 7 years ago
- Carving tool based in Radare2 & Yara☆15Updated 6 years ago