☆37Dec 17, 2020Updated 5 years ago
Alternatives and similar repositories for securityonion-misp
Users that are interested in securityonion-misp are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- ☆13Oct 7, 2019Updated 6 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆102Dec 29, 2023Updated 2 years ago
- Basic c2-matrix analysis enviroment using Suricata + Wazuh + Elastic stack☆13Apr 18, 2020Updated 6 years ago
- A quick bash script that I created in order to speed up the creation of usable kali boxes.☆15Oct 29, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Quick lookup files for SUNBURST Backdoor☆12Dec 15, 2020Updated 5 years ago
- ☆15Nov 25, 2021Updated 4 years ago
- Zeek package to generate a SMB client fingerprint☆27May 5, 2020Updated 6 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆81Jun 25, 2026Updated 2 months ago
- ATT&CK Remote Threat Hunting Incident Response☆203Dec 8, 2024Updated last year
- ☆25Jun 22, 2022Updated 4 years ago
- ☆14Aug 21, 2022Updated 4 years ago
- A simple ReST server to lookup threat actors (by name, synonym or UUID) and returning the corresponding MISP galaxy information about the…☆51Aug 30, 2025Updated last year
- JPCERT/CC public YARA rules repository☆112Mar 9, 2026Updated 6 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Integrate Zeek with Alienvault OTX☆25Sep 11, 2020Updated 6 years ago
- Finding your secret(Credential, API Key, AWS Key, Token, etc.) in your source code, files☆17Jan 26, 2026Updated 7 months ago
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Oct 12, 2020Updated 5 years ago
- Extract GUIDs from .NET assemblies☆21Jun 15, 2016Updated 10 years ago
- ☆33Jun 27, 2022Updated 4 years ago
- Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana☆303Mar 19, 2026Updated 6 months ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Jul 23, 2015Updated 11 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆161Mar 10, 2025Updated last year
- Deploy MISP Project software with Vagrant.☆45Jun 15, 2020Updated 6 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Various tools and scripts☆43Nov 30, 2022Updated 3 years ago
- Cyber Threats Detection Rules☆14Sep 16, 2025Updated last year
- ☆10Oct 22, 2017Updated 8 years ago
- Domain Connectivity Analysis Tools to analyze aggregate connectivity patterns across a set of domains during security investigations☆47Nov 1, 2021Updated 4 years ago
- A collection of Python resources for Blue Team security work☆17Sep 23, 2018Updated 7 years ago
- Python IOC Editor☆66Mar 10, 2015Updated 11 years ago
- All the IOC's I have gathered which are used directly involved coronavirus / covid-19 / SARS-CoV-2 cyber attack campaigns☆65Apr 11, 2021Updated 5 years ago
- Sunburst IOCs for Splunk Ingest☆17Jan 28, 2021Updated 5 years ago
- VirusTotal SIEM Integration and Automation☆18Jan 16, 2017Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Splunk app to compare Endpoint Detection and Response solutions based on MITRE ATT&CK evaluations (APT3, APT29, Carbanak + FIN7, Wizard S…☆19Sep 5, 2022Updated 4 years ago
- SlyPI☆20Jun 13, 2013Updated 13 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆174Mar 23, 2021Updated 5 years ago
- WebUI of MineMeld☆42Mar 16, 2023Updated 3 years ago
- ☆55Sep 6, 2020Updated 6 years ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆48Jan 2, 2022Updated 4 years ago
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆121May 22, 2023Updated 3 years ago