salesforce / jarmLinks
☆1,268Updated 2 years ago
Alternatives and similar repositories for jarm
Users that are interested in jarm are comparing it to the libraries listed below
Sorting:
- JA3 is a standard for creating SSL client fingerprints in an easy to produce and shareable way.☆3,018Updated 6 months ago
- Warning lists to inform users of MISP about potential false-positives or other information in indicators☆592Updated 2 weeks ago
- Fast Application Layer Scanner☆1,981Updated this week
- A utility to safely generate malicious network traffic patterns and evaluate controls.☆1,336Updated last year
- Guidance for mitigation web shells. #nsacyber☆982Updated 2 years ago
- JA4+ is a suite of network fingerprinting standards☆1,572Updated last week
- HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints…☆541Updated 6 months ago
- A list of cyber-chef recipes and curated links☆2,145Updated last year
- Data exfiltration over DNS request covert channel☆875Updated last year
- Automatically created C2 Feeds☆652Updated this week
- Defences against Cobalt Strike☆1,290Updated 3 years ago
- Open Source EDR for Windows☆1,279Updated 2 years ago
- RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact☆1,731Updated 3 months ago
- A set of Zeek scripts to detect ATT&CK techniques.☆611Updated last year
- Elastic Security detection content for Endpoint☆1,311Updated this week
- YARA signature and IOC database for my scanners and tools☆2,770Updated last week
- Python library for connecting to CertStream☆461Updated last year
- APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the …☆1,386Updated 11 months ago
- An Active Defense and EDR software to empower Blue Teams☆1,305Updated 2 years ago
- VECTR is a tool that facilitates tracking of your red and blue team testing activities to measure detection and prevention capabilities a…☆1,518Updated last month
- Extract and aggregate threat intelligence.☆882Updated last year
- FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network …☆674Updated 2 years ago
- A collection of red team and adversary emulation resources developed and released by MITRE.☆522Updated 4 years ago
- Pattern recognition for hosts, services, and content☆748Updated 2 weeks ago
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,508Updated last year
- Sophos-originated indicators-of-compromise from published reports☆633Updated 2 months ago
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆2,255Updated 3 weeks ago
- Detect Tactics, Techniques & Combat Threats☆2,212Updated this week
- Zui is a powerful desktop application for exploring and working with data. The official front-end to the Zed lake.☆1,897Updated last month
- ReversingLabs YARA Rules☆867Updated 2 weeks ago