vncloudsco / suricata-rules
suricata rules
☆14Updated 4 months ago
Alternatives and similar repositories for suricata-rules
Users that are interested in suricata-rules are comparing it to the libraries listed below
Sorting:
- Ripple20 Critical Vulnerabilities - Detection Logic and Signatures☆12Updated 3 years ago
- Look into EDR events from network☆23Updated 2 weeks ago
- ☆43Updated 2 years ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆65Updated last year
- Collection of Suricata rule sets that I use modified to my environments.☆39Updated 4 years ago
- Our collection of Wazuh detection rules for our Offense Lab☆14Updated 3 years ago
- This repository hosts community contributed Kestrel huntflows (.hf) and huntbooks (.ipynb)☆33Updated last year
- Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)☆81Updated 3 weeks ago
- How to Zeek Sysmon Logs!☆101Updated 3 years ago
- ☆53Updated last week
- Example Suricata rules implementing some of my detection tactics☆20Updated 2 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆40Updated 2 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- Suricata rules for network anomaly detection☆162Updated last month
- Open source endpoint agent providing host information to Zeek. [v2]☆80Updated this week
- Zeek Extension to Collect Metadata for Profiling of Endpoints and Proxies☆31Updated last year
- Threat Detection & Anomaly Detection rules for popular open-source components☆52Updated 2 years ago
- Quickly generate suricata rules for IOCs☆29Updated 4 years ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆70Updated last month
- Suricata rule and intel index☆30Updated last month
- Community-based CybergON-powered Suricata rules☆12Updated 2 years ago
- ☆48Updated this week
- collector/runner☆65Updated last month
- Suricata rules for the new critical vulnerabilities☆82Updated 4 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆33Updated 4 years ago
- Workflows for Shuffle☆22Updated 2 years ago
- PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Pac…☆95Updated 3 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆39Updated last year
- Actionable data for Security Operations☆18Updated 3 years ago