slacker007 / Bro-NetworkSecurityMonitoring
collection of bro and bash scripts that when run from the same directory on Linux distro with bro installed, will pull information such as active HTTP conns, FTP conns, etc. It also carves various types of files at the same time. They can be run against snort logs or pcaps
☆12Updated 9 years ago
Alternatives and similar repositories for Bro-NetworkSecurityMonitoring:
Users that are interested in Bro-NetworkSecurityMonitoring are comparing it to the libraries listed below
- Cyber Intel Management☆48Updated 7 years ago
- Python script to pull various IOCs from PDFs☆15Updated 10 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- Various Bro scripts☆96Updated 8 years ago
- ☆37Updated 10 years ago
- Credential Phish Analysis and Automation☆96Updated 6 years ago
- Some IR notes☆73Updated 8 years ago
- Basic Maltego Transforms for looking up SSL certs and IP info from censys.io☆41Updated 8 years ago
- Transforms for the AlienVault OTX service☆39Updated 8 years ago
- A collection of Bro scripts I've written☆40Updated 9 years ago
- Mitre chopshop network decoder framework☆30Updated 8 years ago
- Open Development projects for TekDefense☆77Updated 8 years ago
- a Malware/Threat Analyst Desktop☆89Updated 9 years ago
- Python script that gets IOC from MISP and converts it into BRO intel files.☆13Updated 9 years ago
- A set of Maltego transforms for VirusTotal Public API v2.0. This set has the added functionality of caching queries on a daily basis to s…☆81Updated 9 years ago
- Collection of bro scripts☆9Updated 9 years ago
- ☆71Updated 3 years ago
- Scripts for Bro IDS and ELK Stack☆56Updated 9 years ago
- IOC Management and Visualization Tool☆47Updated 2 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Just another tool to extract Indicator of compromise (ioc) from files☆29Updated 9 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33Updated 8 years ago
- A set of templates for documenting threat intelligence☆74Updated 12 years ago
- A collection of bro_scripts and signatures☆26Updated 5 years ago
- Script for generating Bro intel files from pdf or html reports☆76Updated 9 years ago
- Harbinger Threat Intelligence☆83Updated 9 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- A tool to convert MISP XML files (events and attributes) into graphs☆20Updated 7 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- Small App for reading from MHN's hpfeeds broker and writing splunk logs☆10Updated 5 years ago