stratosphereips / netflowlabeler
A configurable rule-based labeling tool for network flow files.
☆16Updated last year
Alternatives and similar repositories for netflowlabeler:
Users that are interested in netflowlabeler are comparing it to the libraries listed below
- CSIRT Tooling: Best Practices in Developing, Maintaining and Distributing Open Source Tools☆16Updated 2 years ago
- Setting up a training environment for MISP☆11Updated 2 years ago
- CERTITUDE - A python package to classify malicious URLs☆20Updated 2 years ago
- CyCAT.org API back-end server including crawlers☆30Updated last year
- A privacy-aware exchange module to securely and privately share your indicators☆13Updated 7 years ago
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆69Updated 6 months ago
- SACTI - Securely aggregate CTI sightings and report them on MISP☆13Updated 2 years ago
- Python CLI and module for CIRCL hash lookup☆12Updated 2 weeks ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Updated 2 years ago
- Yara rules for malicious javascript files from public repositories or written by me.☆11Updated 3 years ago
- A real-time Grafana dashboard using MISP ZeroMQ message queue and InfluxDB☆17Updated 10 months ago
- Can you pay the ransom in your country?☆13Updated last year
- Suricata rule and intel index☆30Updated last month
- Enables Zeek to communicate with Tenzir☆11Updated last year
- D4 core software (server and sample sensor client)☆43Updated last year
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- The CRATOS proxy API integrates with your MISP instance and allows to extract indicators that can be consumed by security components such…☆13Updated this week
- Potiron - Normalize, Index and Visualize Network Capture☆83Updated 5 years ago
- A Python implementation of the Community ID flow hashing standard☆23Updated last year
- Passive DNS server interface compliant to "Common Output Format"☆10Updated 8 years ago
- Notes for High Availability MISP in AWS☆19Updated 5 years ago
- Incident Response Network Tools☆24Updated 3 years ago
- server for indexing and querying passive DNS observations☆45Updated 11 months ago
- Firepit - STIX Columnar Storage☆16Updated 7 months ago
- pcapdj - dispatch pcap files☆46Updated 4 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated last year
- collect logs and alerts from 27 honeypots and send it to backed (eg peba, geba), hpfeeds, influxdb or jSON file.☆16Updated last year
- ☆24Updated 2 years ago