xisafe / suricata-ruleLinks
suricata IDS的规则,测试在用的,部分自写的规则视情况放出。
☆18Updated 6 years ago
Alternatives and similar repositories for suricata-rule
Users that are interested in suricata-rule are comparing it to the libraries listed below
Sorting:
- 天御攻防实验室 - 威胁猎杀实战系列☆102Updated 6 years ago
- Suricata安装部署&丢包优化&性能调优&规则调整&Pfring设置☆143Updated 5 years ago
- 《横向移动攻击与检测技术》专栏文章☆17Updated 5 years ago
- A simple web platform for WatchAD☆110Updated 2 years ago
- A golang client of our webshell scanner API☆28Updated 7 years ago
- ☆57Updated 4 years ago
- Code snippet accompanying blog post☆30Updated 9 years ago
- ☆38Updated last year
- ThreatHound is a threat intelligence query tool use for detecting potentially malicious IP or domains. It combines the MISP open source t…☆40Updated 5 years ago
- nmap service and application version detection (without nmap installation)☆115Updated 7 years ago
- ☆30Updated 2 years ago
- Audit your acl of network device☆34Updated 5 years ago
- The python client of passivedns.cn☆98Updated 6 years ago
- Automatic reversed shell detecting and defensing☆51Updated 6 years ago
- HIDS全称是Host-based Intrusion Detection System,即基于主机型入侵检测系统,HIDS运行依赖这样一个原理:一个成功的入侵者一般而言都会留下他们入侵的痕迹。本人更倾向于通过记录主机的重要信息变更来发现入侵者。 本项目由两部分组成:一部分…☆107Updated 7 years ago
- SDL China☆33Updated 6 years ago
- A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会☆165Updated 6 years ago
- ☆106Updated 7 years ago
- 恶意脚本检测分类工具☆40Updated 4 years ago
- tcppc: A simple honeypot to capture TCP/TLS/UDP payloads on ALL ports.☆35Updated 4 years ago
- Oops, It's funny to detect a webshell. Temporarily not maintained☆18Updated 7 years ago
- check_IP is to judge whether a IP is malicious based on open threat intelligence,基于开源威胁情报AlienVault,排查IP地址及域名的恶意性☆52Updated 7 years ago
- ☆21Updated 7 years ago
- Linux命令转发记录☆64Updated 6 years ago
- Network Security Vulnerability Scanner☆117Updated 2 years ago
- 威胁情报采集系统☆32Updated 2 years ago
- 本脚本是HIDS组成的一部分,旨在对指定监控目录进行文件hash记录,定时运行,发现文件替换、修改等后门可疑程序。☆13Updated 7 years ago
- 使用机器学习识别WebShell☆127Updated 7 years ago
- Sep0lkit's Blog☆15Updated 5 years ago
- 扫描器Awvs 11和Nessus 7 Api利 用脚本☆114Updated 7 years ago