thomaspatzke / EQUEL
An Elasticsearch QUEry Language
☆56Updated 7 years ago
Alternatives and similar repositories for EQUEL:
Users that are interested in EQUEL are comparing it to the libraries listed below
- ☆28Updated 7 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- ☆76Updated 2 years ago
- Some IR notes☆73Updated 8 years ago
- Bro Intel Feed Linter☆26Updated 5 years ago
- Quick tool for using Hybrid Analysis API on command line..☆17Updated 7 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33Updated 8 years ago
- This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.☆22Updated 7 years ago
- Command-line Interface for Binar.ly☆37Updated 8 years ago
- ☆33Updated 4 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 8 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 5 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 10 years ago
- Malware/IOC ingestion and processing engine☆104Updated 6 years ago
- integrating bro into yara☆33Updated 10 years ago
- ☆15Updated 7 years ago
- Honeypot log processor to create OTX Pulse entries☆29Updated last year
- Serverless, low cost, threat intel aggregation for enterprise or personal use, backed by ElasticSearch.☆140Updated last year
- ☆19Updated 6 years ago
- Automated install scripts for Cuckoo sandbox☆37Updated 7 years ago
- Monitor JSON notifications feed from VT☆16Updated 7 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- Performs OCR on image files and scans them for matches to YARA rules☆40Updated 6 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆47Updated 6 years ago
- ☆24Updated 8 years ago
- Python abstract API for PassiveTotal services in the form of libraries and command line utilities.☆85Updated last year
- Workbench: A scalable python framework for security research and development teams.☆91Updated 5 years ago
- Identify botnet panels with Ensembled Decision Trees☆18Updated 8 years ago
- ☆85Updated 11 years ago