xnih / satoriLinks
Python rewrite of passive OS fingerprinting tool
☆177Updated 3 weeks ago
Alternatives and similar repositories for satori
Users that are interested in satori are comparing it to the libraries listed below
Sorting:
- JA3 TLS Fingerprint database☆79Updated 5 years ago
- A wireshark/tshark plugin for the JA3 TLS Client Fingerprinting Algorithm☆59Updated last year
- LZR quickly detects and fingerprints unexpected services running on unexpected ports.☆173Updated last month
- FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network …☆670Updated last year
- Suricata rules for network anomaly detection☆164Updated last month
- a network packet capture compiler☆199Updated 3 years ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆77Updated last year
- Mercury: network metadata capture and analysis☆457Updated this week
- Ready to run scripts for network analysis☆88Updated 2 months ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆153Updated 2 months ago
- CapAnalysis source code repository☆87Updated 6 years ago
- TLS Fingerprinting☆388Updated 4 years ago
- Suricata Verification Tests - Testing Suricata Output☆108Updated this week
- Suricata, Snort and Zeek IDS rule and pcap testing system☆478Updated 2 weeks ago
- Zeek-Formatted Threat Intelligence Feeds☆367Updated this week
- p0f unofficial git repo☆494Updated 5 years ago
- Generic Low Interaction Honeypot☆278Updated last week
- The tool for updating your Suricata rules.☆271Updated last month
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆72Updated 10 months ago
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆408Updated this week
- Hfinger - fingerprinting HTTP requests☆137Updated 2 years ago
- Zeek IDS Dockerfile☆101Updated 2 years ago
- Passive DNS Capture and Monitoring Toolkit☆329Updated 3 weeks ago
- HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints…☆541Updated last month
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆458Updated last week
- Nginx module that calcuates fingerprints from the JA4+ suite☆66Updated last week
- Warning lists to inform users of MISP about potential false-positives or other information in indicators☆575Updated 3 weeks ago
- simple YARA-based IOC scanner☆169Updated 3 months ago
- OSfooler-ng prevents remote active/passive OS fingerprinting by tools like nmap or p0f☆206Updated 2 years ago
- This repository contains a comprehensive list of over 30k dynamic DNS domains as of 2024. The list is provided for informational purposes…☆96Updated 5 months ago