vishal1991 / Network-ForensicsLinks
• Packet capture (PCAP) file analysis to analyze traffic sent by malicious IP address.
☆12Updated 10 years ago
Alternatives and similar repositories for Network-Forensics
Users that are interested in Network-Forensics are comparing it to the libraries listed below
Sorting:
- Network forensics tool to parse pcap and provide visualizations using D3.js☆15Updated 11 years ago
- Passive DNS V2☆60Updated 11 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 9 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- The Auditd Framework logs and applies security policy to linux auditd data☆15Updated 7 years ago
- Malice Yara Plugin☆30Updated 5 years ago
- The FastIR Server is a Web server to schedule FastIR Collector forensics collect thanks to the FastIR Agent☆12Updated 8 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 7 months ago
- ☆18Updated 7 years ago
- Last download from git://git.carnivore.it/honeytrap.git of Honytrap by Tillmann Werner☆43Updated 3 years ago
- malware-traffic-analysis.net PCAPs repository.☆38Updated 9 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆43Updated 8 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33Updated 9 years ago
- Detect HTTP stalling attacks like slowloris with Bro☆19Updated 7 years ago
- The repository contains IOCs in CSV format for APT, Cyber Crimes, Malware and Trojan and whatever I found as part of hunting and research☆12Updated 8 years ago
- dnssinkholelist is a python package focused on combining open source lists of malicious domains, dynamic dns domains, and advertisement d…☆18Updated 9 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Updated 5 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 8 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 8 years ago
- Network Forensics Workshop Files☆17Updated 10 years ago
- Top DNS Measurement for Bro☆11Updated 4 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 5 years ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Updated 7 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- The stratosphere testing framework is mean to help in the researching and verification of the behavioral models used by the Stratoshpere …☆50Updated 7 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 8 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 8 years ago