xnih / satori
Python rewrite of passive OS fingerprinting tool
☆172Updated 9 months ago
Alternatives and similar repositories for satori:
Users that are interested in satori are comparing it to the libraries listed below
- JA3 TLS Fingerprint database☆78Updated 5 years ago
- LZR quickly detects and fingerprints unexpected services running on unexpected ports.☆171Updated 2 months ago
- OSfooler-ng prevents remote active/passive OS fingerprinting by tools like nmap or p0f☆205Updated 2 years ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆76Updated last year
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆153Updated 3 weeks ago
- Suricata rules for network anomaly detection☆159Updated this week
- A wireshark/tshark plugin for the JA3 TLS Client Fingerprinting Algorithm☆58Updated last year
- Zeek IDS Dockerfile☆101Updated 2 years ago
- Cyber Threat Intelligence Feeds☆95Updated 8 years ago
- Passive Real-time Asset Detection System☆237Updated 10 months ago
- Zeek-Formatted Threat Intelligence Feeds☆359Updated this week
- Suricata, Snort and Zeek IDS rule and pcap testing system☆474Updated 3 months ago
- Suricata Verification Tests - Testing Suricata Output☆106Updated this week
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆401Updated 2 weeks ago
- a network packet capture compiler☆198Updated 2 years ago
- ☆167Updated 3 years ago
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆109Updated 11 months ago
- Mercury: network metadata capture and analysis☆455Updated last month
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆453Updated last week
- Wireshark plugin to display Suricata analysis info☆93Updated 3 years ago
- Hfinger - fingerprinting HTTP requests☆137Updated last year
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆72Updated 9 months ago
- FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network …☆665Updated last year
- Simple High Interaction Honeypot Solution for SMB protocol☆48Updated 4 years ago
- Download pcap files from http://www.malware-traffic-analysis.net/☆75Updated 7 years ago
- Suspicious DGA from PDNS and Sandbox.☆183Updated 2 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆170Updated last year
- A completely automated anomaly detector Zeek network flows files (conn.log).☆77Updated 8 months ago
- p0f unofficial git repo☆489Updated 5 years ago
- Ready to run scripts for network analysis☆88Updated last month