stratosphereips / netflowlabelerLinks
A configurable rule-based labeling tool for network flow files.
☆16Updated 2 years ago
Alternatives and similar repositories for netflowlabeler
Users that are interested in netflowlabeler are comparing it to the libraries listed below
Sorting:
- A privacy-aware exchange module to securely and privately share your indicators☆13Updated 7 years ago
- Setting up a training environment for MISP☆12Updated 2 years ago
- server for indexing and querying passive DNS observations☆46Updated 3 months ago
- The Attacker IP Prioritizer(AIP) dynamically generates resource-friendly IPv4 blocklists from Zeek network flows.☆30Updated 7 months ago
- Declare and keep up a rogue default-gateway in Cisco's HSRP default configuration☆18Updated 8 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Fast lookup server for NSRL and other hash database used in digital forensic☆45Updated 3 years ago
- Build Automated Machine Images for MISP☆28Updated 2 years ago
- CERTITUDE - A python package to classify malicious URLs☆20Updated 3 years ago
- Python CLI and module for CIRCL hash lookup☆14Updated 4 months ago
- The CRATOS proxy API integrates with your MISP instance and allows to extract indicators that can be consumed by security components such…☆13Updated 3 months ago
- Application and service identification rules for Suricata☆18Updated 2 years ago
- CyCAT.org taxonomies☆15Updated 4 years ago
- A mapping project between tags (annotations, labels) and domain names☆11Updated last year
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆72Updated 11 months ago
- D4 core software (server and sample sensor client)☆42Updated last year
- Yet another way to find where to report an abuse☆32Updated 5 months ago
- Firepit - STIX Columnar Storage☆16Updated last year
- Passive DNS server interface compliant to "Common Output Format"☆10Updated 8 years ago
- We publish indicators of compromise related to our stories here. See https://blog.team-cymru.com/ for more information.☆9Updated 3 years ago
- CSIRT Tooling: Best Practices in Developing, Maintaining and Distributing Open Source Tools☆16Updated 3 years ago
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- OASIS TC Open Repository: STIX Enhancement Proposals (SEPs) https://github.com/oasis-open/cti-sep-repository☆16Updated 2 years ago
- Tool for automatic list generation of known TOR and VPN exit nodes☆29Updated last year
- ☆15Updated 7 years ago
- OASIS TC Open Repository: Match STIX content against STIX patterns☆44Updated 2 years ago
- Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.☆11Updated 4 months ago
- Malware Configuration And Payload Extraction☆18Updated 5 years ago
- The official Prelude-Correlator GitHub mirror of https://www.prelude-siem.org/projects/prelude-correlator/repository☆10Updated 4 years ago
- A Passive DNS backend and collector☆31Updated 2 years ago