sethhall / bro-apt1
This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.
☆47Updated 10 years ago
Related projects ⓘ
Alternatives and complementary repositories for bro-apt1
- ☆72Updated 2 years ago
- Bro scripts to be shared with the community☆109Updated 11 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- ☆85Updated 11 years ago
- A collection of Bro scripts I've written☆40Updated 9 years ago
- Various Bro scripts☆96Updated 8 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 10 years ago
- Script for generating Bro intel files from pdf or html reports☆75Updated 8 years ago
- Bro Snippets☆21Updated 10 years ago
- CRITs IOC Visualization in Maltego☆28Updated 9 years ago
- Scripts for Bro IDS and ELK Stack☆56Updated 9 years ago
- Threat Intelligence distribution☆30Updated 8 years ago
- integrating bro into yara☆33Updated 9 years ago
- A collection of bro_scripts and signatures☆26Updated 5 years ago
- Various Bro scripts☆38Updated 10 years ago
- Some IR notes☆73Updated 8 years ago
- Bro Intel Feed Linter☆26Updated 5 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 2 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 8 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- The Bro/Zeek language cheat sheet☆50Updated 11 years ago