sethhall / bro-apt1
This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.
☆47Updated 11 years ago
Alternatives and similar repositories for bro-apt1:
Users that are interested in bro-apt1 are comparing it to the libraries listed below
- ☆71Updated 3 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- ☆85Updated 11 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- A collection of Bro scripts I've written☆40Updated 9 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 9 years ago
- Bro Snippets☆21Updated 10 years ago
- integrating bro into yara☆33Updated 10 years ago
- Various Bro scripts☆96Updated 8 years ago
- Scripts for Bro IDS and ELK Stack☆56Updated 9 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- Various Bro scripts☆38Updated 10 years ago
- Bro Intel Feed Linter☆26Updated 5 years ago
- CRITs IOC Visualization in Maltego☆27Updated 10 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- Cyber Intel Management☆48Updated 7 years ago
- Some IR notes☆73Updated 8 years ago
- Analysis scripts for the Bro Intrusion Detection System☆58Updated 11 years ago
- scan-detection policies for bro☆16Updated 3 months ago
- Meeting notes☆15Updated 9 years ago
- A collection of bro_scripts and signatures☆26Updated 5 years ago
- Aggregates security threats from a number of online sources, and outputs to Syslog CEF, Snort Signatures, Iptables rules, hosts.deny, etc…☆79Updated 9 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- Bro stuff.☆12Updated 8 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- ☆17Updated 7 years ago
- A set of templates for documenting threat intelligence☆74Updated 12 years ago