xnih / satori
Python rewrite of passive OS fingerprinting tool
☆169Updated 8 months ago
Alternatives and similar repositories for satori:
Users that are interested in satori are comparing it to the libraries listed below
- JA3 TLS Fingerprint database☆77Updated 5 years ago
- p0f unofficial git repo☆489Updated 5 years ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆76Updated last year
- Passive TCP/IP Fingerprinting Tool. Run this on your server and find out what Operating Systems your clients are *really* using.☆318Updated last year
- A wireshark/tshark plugin for the JA3 TLS Client Fingerprinting Algorithm☆58Updated last year
- Ready to run scripts for network analysis☆88Updated last week
- Wireshark plugin to display Suricata analysis info☆93Updated 3 years ago
- FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network …☆664Updated last year
- TLS Fingerprinting☆385Updated 4 years ago
- ☆168Updated 3 years ago
- OSfooler-ng prevents remote active/passive OS fingerprinting by tools like nmap or p0f☆204Updated 2 years ago
- Suricata Verification Tests - Testing Suricata Output☆105Updated this week
- Zeek IDS Dockerfile☆101Updated 2 years ago
- LZR quickly detects and fingerprints unexpected services running on unexpected ports.☆169Updated last month
- Hfinger - fingerprinting HTTP requests☆135Updated last year
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆153Updated 2 weeks ago
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆109Updated 11 months ago
- Suricata Extreme Performance Tuning guide☆206Updated 7 years ago
- Warning lists to inform users of MISP about potential false-positives or other information in indicators☆558Updated last week
- An open standard for hashing network flows into identifiers, a.k.a "Community IDs".☆176Updated 6 months ago
- Axeman is a utility to retrieve certificates from Certificate Transparency Lists (CTLs)☆223Updated last year
- CapAnalysis source code repository☆86Updated 6 years ago
- How to Zeek Sysmon Logs!☆101Updated 3 years ago
- Mercury: network metadata capture and analysis☆455Updated 2 weeks ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆75Updated 7 years ago
- a network packet capture compiler☆198Updated 2 years ago
- Suricata rules for network anomaly detection☆156Updated last week
- Mapping NSM rules to MITRE ATT&CK☆70Updated 4 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆69Updated 2 months ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆87Updated 10 months ago