zeek / zeek-aux
Zeek Auxiliary Programs
☆26Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for zeek-aux
- ☆34Updated 3 years ago
- A website and framework for testing NIDS detection☆56Updated 3 years ago
- misp-cloud - Cloud-ready images of MISP☆72Updated 2 years ago
- A system that creates a bogus web structure to entrap and delay web scanners☆52Updated 3 years ago
- A Splunk app with saved reports derived from Sigma rules☆72Updated 6 years ago
- FRAC and RIFT☆17Updated 5 years ago
- Collection of walkthroughs on various threat hunting techniques☆75Updated 4 years ago
- Expert Investigation Guides☆50Updated 3 years ago
- Get started using Synapse Open-Source to start a Cortex and perform analysis within your area of expertise.☆38Updated 2 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Updated 8 years ago
- ☆77Updated 5 years ago
- The FASTEST way to consume threat intel.☆64Updated last year
- A community event for security researchers to share their favorite notebooks☆106Updated 9 months ago
- ☆48Updated 4 years ago
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆58Updated last year
- ☆43Updated last month
- Import specific data sources into the Sigma generic and open signature format.☆77Updated 2 years ago
- Tool used to perform threat intelligence against packet data☆35Updated 7 months ago
- Volatility plugins developed and maintained by the community☆21Updated 2 months ago
- Wrap any binary into a cached webserver☆53Updated 2 years ago
- Analyze binaries collected in VMware Carbon Black EDR against Yara rules.☆36Updated last year
- Carbon Black Feeds☆70Updated last year
- Slides and Other Resources from my latest Talks and Presentations☆24Updated 3 years ago
- Integrate Zeek with Alienvault OTX☆25Updated 4 years ago
- InvestigationPlaybookSpec☆72Updated 7 years ago
- A Splunk App containing Sigma detection rules, which can be updated from a Git repository.☆107Updated 4 years ago
- Recon Hunt Queries☆75Updated 3 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆72Updated 5 months ago
- automate your MISP installs☆66Updated 4 years ago
- ☆31Updated last month