sandflysecurity / sandfly-setupLinks
Sandfly Security Agentless Compromise and Intrusion Detection System For Linux
☆79Updated 2 weeks ago
Alternatives and similar repositories for sandfly-setup
Users that are interested in sandfly-setup are comparing it to the libraries listed below
Sorting:
- ☆24Updated last month
- Fast IOC and YARA Scanner☆79Updated 5 years ago
- Caldera plugin to deploy "humans" to emulate user behavior on systems☆28Updated last year
- Tool for quickly gathering information from Shodan.io about the number of IPs which satisfy large number of different queries☆49Updated 2 years ago
- On demand query API for https://github.com/davidonzo/Threat-Intel project.☆55Updated 11 months ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆44Updated last year
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated 2 years ago
- ☆53Updated last week
- Extracts fields from zeek logs, compatible with zeek-cut☆22Updated 10 months ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Device profile: Define acceptable amounts of traffic for your devices and see a report of outliers.☆16Updated 5 years ago
- A Zeek Network Security Monitor tutorial that will cover the basics of creating a Zeek instance on your network in addition to all of the…☆62Updated 2 years ago
- A new Cyber Threat Intelligence Capability Maturity Model (CTI-CMM) to empower your team and create lasting value. Inspired by Industry N…☆34Updated last month
- A MITRE ATT&CK Lookup Tool☆45Updated last year
- ☆28Updated 4 months ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 4 months ago
- ☆65Updated 3 months ago
- Tool used to perform threat intelligence against packet data☆35Updated 4 months ago
- Practical Information Sharing between Law Enforcement and CSIRT communities using MISP☆32Updated last year
- Open platform for sharing malware distribution sites☆43Updated 6 months ago
- The aim of this repository is to provide a list of examples of tools, sources and measures available to incident response teams☆58Updated 4 years ago
- Zeek Extension to Collect Metadata for Profiling of Endpoints and Proxies☆33Updated last year
- ☆80Updated 2 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- Repository of tools and resources for analyzing Docker containers☆65Updated last year
- ☆48Updated 4 months ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆109Updated 2 years ago
- ☆118Updated last year
- A python script to turn Ubuntu Desktop in a one stop security platform. The InfoSec Fortress installs the packages,tools, and resources t…☆54Updated 3 years ago
- Very basic CLI SIEM (Security Information and Event Management system).☆39Updated 7 years ago