runZeroInc / recog
Pattern recognition for hosts, services, and content
☆13Updated 2 years ago
Alternatives and similar repositories for recog:
Users that are interested in recog are comparing it to the libraries listed below
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Exploit for win10 SMB3.1☆17Updated 4 years ago
- The FastIR Server is a Web server to schedule FastIR Collector forensics collect thanks to the FastIR Agent☆12Updated 7 years ago
- ☆22Updated 4 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Carving tool based in Radare2 & Yara☆15Updated 6 years ago
- ☆15Updated 7 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- Bro analyzer that detects Google's QUIC protocol☆10Updated 4 years ago
- This is a repository for the public blog with Labs indicators of compromise.☆10Updated 5 years ago
- A set of YARA rules for the AIL framework to detect leak or information disclosure☆38Updated last month
- ☆24Updated 2 years ago
- Yara rules for malicious javascript files from public repositories or written by me.☆12Updated 3 years ago
- Forensics triage tool relying on Volatility and Foremost☆25Updated last year
- Repository of Information sharing on threats and indicators☆12Updated 5 years ago
- Manticore's Public Threats Repository☆10Updated 4 years ago
- Analytics for Accounting logs from Network devices☆17Updated 4 years ago
- Scan blob files for sensitive content☆11Updated 3 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 4 months ago
- Suricata rule and intel index☆31Updated last week
- The Multiplatform Linux Sandbox☆15Updated last year
- Automate the regular transfer of AIS data into a MISP Server☆7Updated 9 months ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- CyCAT.org taxonomies☆14Updated 3 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 5 years ago
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated 5 months ago
- Library and example applications for using/abusing the information-leaky L2Trace service on Cisco switches. PSIRT Advisory: cisco-sa-2019…☆3Updated 2 years ago
- ☆15Updated 3 years ago
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Updated 4 years ago
- HoneyDB Python Module☆13Updated last year