shirkdog / pulledporkLinks
Pulled Pork for Snort and Suricata rule management (from Google code)
☆442Updated 4 years ago
Alternatives and similar repositories for pulledpork
Users that are interested in pulledpork are comparing it to the libraries listed below
Sorting:
- Barnyard2 is a dedicated spooler for Snort's unified2 binary output format.☆354Updated last year
- Sguil client for NSM☆222Updated last year
- Automated deployment scripts for the RockNSM network hunting distribution.☆455Updated 2 years ago
- Scirius is a web application for Suricata ruleset management and threat hunting.☆667Updated 2 months ago
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆471Updated 3 weeks ago
- idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)☆282Updated 4 months ago
- psad: Intrusion Detection and Log Analysis with iptables☆412Updated 2 years ago
- The Correlated CVE Vulnerability And Threat Intelligence Database API☆944Updated 4 years ago
- Snort FAQ☆118Updated 4 years ago
- The tool for updating your Suricata rules.☆282Updated 2 weeks ago
- A Simple QUEry and Report Tool☆142Updated 6 years ago
- Suricata Extreme Performance Tuning guide☆213Updated 7 years ago
- Super Next generation Advanced Reactive honEypot☆472Updated last year
- Web Application Honeypot☆588Updated last year
- Snort + Barnyard2 + Pulledpork → The easy way!☆169Updated 4 years ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆504Updated last month
- Wazuh - Ruleset☆489Updated last year
- A low to medium interaction honeypot.☆473Updated last year
- DEPRECATED - USE v3 (bearded-avenger)☆229Updated 7 years ago
- ** README ** This repo has MOVED to https://github.com/quadrantsec/sagan☆229Updated 4 years ago
- Tool to gather Threat Intelligence indicators from publicly available sources☆658Updated 6 years ago
- OpenSOC Apache Hadoop Code☆580Updated 5 years ago
- Passive Real-time Asset Detection System☆248Updated last year
- MozDef: The Mozilla Defense Platform☆68Updated 5 years ago
- Sandia Cyber Omni Tracker (SCOT)☆251Updated last year
- The Python SDK for AlienVault OTX☆391Updated last year
- The default package source of the Zeek Package Manager. Wrote a package? See the README for how to get it included.☆143Updated this week
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆155Updated last year
- An analytical framework for network traffic and behavioral analytics☆456Updated 2 years ago
- A Linux Auditd rule set mapped to MITRE's Attack Framework☆815Updated 5 years ago