salesforce / GQUIC_Protocol_AnalyzerLinks
GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor
☆78Updated last year
Alternatives and similar repositories for GQUIC_Protocol_Analyzer
Users that are interested in GQUIC_Protocol_Analyzer are comparing it to the libraries listed below
Sorting:
- JA3 TLS Fingerprint database☆79Updated 5 years ago
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆73Updated last year
- Plugin for Zeek/Bro which provides http2 decoder/analyzer☆31Updated last year
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 10 months ago
- This project is no longer maintained. There's a successor at https://github.com/zeek/zeek-agent-v2☆123Updated 4 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- How to Zeek Sysmon Logs!☆102Updated 3 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Updated 5 years ago
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆102Updated last week
- A wireshark/tshark plugin for the JA3 TLS Client Fingerprinting Algorithm☆60Updated last year
- Wireshark plugin to display Suricata analysis info☆95Updated 3 years ago
- This script scans the files extracted by Zeek with YARA rules located on the rules folder on a Linux based Zeek sensor, if there is a mat…☆62Updated last year
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆121Updated 4 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆36Updated 2 years ago
- aka GENESIDS: Reads and parses rules using a "snort like" syntax and generates and sends packets that trigger events in signature based I…☆22Updated 6 years ago
- pyJARM is a library for doing JARM fingerprinting using python☆50Updated 3 months ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- A mapping of used malware names to commonly known family names☆62Updated 2 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆109Updated 7 years ago
- ☆33Updated 5 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Specifications used in the MISP project including MISP core format☆51Updated last week
- Zeek support for Community ID flow hashing.☆36Updated 2 years ago
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆66Updated last year
- Plugin providing native AF_Packet support for Zeek.☆34Updated this week
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆16Updated last year
- Suricata rule and intel index☆31Updated last week