theY4Kman / suricata-prettifier
Command-line tool to format and syntax highlight Suricata rules
☆13Updated 5 years ago
Alternatives and similar repositories for suricata-prettifier:
Users that are interested in suricata-prettifier are comparing it to the libraries listed below
- 🌴 The STIX2 Pattern expression parser for humans☆26Updated 5 years ago
- Parse Suricata rules☆13Updated last year
- A Python implementation of the Community ID flow hashing standard☆23Updated last year
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated 7 months ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 5 years ago
- ☆33Updated 3 years ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- Semi-Intelligent HoneyPot Network - Semi-Intelligent Reactive Environment Network☆13Updated 6 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- F-Secure Lightweight Acqusition for Incident Response (FLAIR)☆16Updated 3 years ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆57Updated last year
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated last month
- Workflows for Shuffle☆21Updated 2 years ago
- Threat Feeds, Threat lists, and regular lists of known IP ranges and domains. It updates every 4 hours.☆15Updated 3 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 3 years ago
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆15Updated 3 years ago
- A python script to shift the timestamp on syslog data. Useful for forensicators combating time skew.☆20Updated 2 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- Zeek package to detect Zerologon☆11Updated 3 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated 2 months ago
- D4 core software (server and sample sensor client)☆43Updated last year
- Easy way to create a MISP event related to a Phishing page☆17Updated last year
- Porting Suricata to Bro signatures☆6Updated 5 years ago
- Setting up a training environment for MISP☆11Updated 2 years ago
- Simple Docker Honeypot server emulating small snippets of the Docker HTTP API☆30Updated 4 years ago
- Yara rules for malicious javascript files from public repositories or written by me.☆11Updated 3 years ago
- This TA takes Suricata5 data from your port mirrored Suricata server and makes it readable within Splunk. See Cheatsheets on how to setup…☆15Updated 4 years ago