sigma Public
Forked from SigmaHQ/sigmaGeneric Signature Format for SIEM Systems
Python UpdatedMar 9, 2021 -
whids Public
Forked from 0xrawsec/whidsOpen Source EDR for Windows
Go Apache License 2.0 UpdatedMar 1, 2021 -
bro-long-connections Public
Forked from corelight/zeek-long-connectionsZeek package for tracking long connections to report them before they have completed.
Zeek BSD 3-Clause "New" or "Revised" License UpdatedFeb 26, 2021 -
Shuffle Public
Forked from Shuffle/ShuffleShuffle: A general purpose security automation platform platform. We focus on accessibility for all.
JavaScript GNU Affero General Public License v3.0 UpdatedFeb 22, 2021 -
Shuffle-apps Public
Forked from Shuffle/python-appsApps to be used for Shuffle SOAR
Python MIT License UpdatedFeb 22, 2021 -
community-id-spec Public
Forked from corelight/community-id-specAn open standard for hashing network flows into identifiers, a.k.a "Community IDs".
Python BSD 3-Clause "New" or "Revised" License UpdatedFeb 9, 2021 -
shuffle-workflows Public
Forked from Shuffle/workflowsWorkflows for Shuffle
MIT License UpdatedFeb 8, 2021 -
streamingphish Public
Forked from wesleyraptor/streamingphishPython-based utility that uses supervised machine learning to detect phishing domains from the Certificate Transparency log network.
Jupyter Notebook Apache License 2.0 UpdatedFeb 2, 2021 -
C3 Public
Forked from WithSecureLabs/C3Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.
C++ Other UpdatedDec 12, 2020 -
ztest Public
Forked from corelight/ztestZeek Unit Testing. Provides a framework to write unit tests for Zeek scripts.
Zeek BSD 3-Clause "New" or "Revised" License UpdatedDec 4, 2020 -
detect-ransomware-filenames Public
Forked from corelight/detect-ransomware-filenamesZeek BSD 3-Clause "New" or "Revised" License UpdatedNov 24, 2020 -
Forked from sbousseaden/PCAP-ATTACKPCAP Samples for Different Post Exploitation Techniques
UpdatedOct 27, 2020 -
FindFrontableDomains Public
Forked from rvrsh3ll/FindFrontableDomainsSearch for potential frontable domains
Python BSD 3-Clause "New" or "Revised" License UpdatedOct 22, 2020 -
bzar Public
Forked from mitre-attack/bzarA set of Zeek scripts to detect ATT&CK techniques.
Zeek BSD 3-Clause "New" or "Revised" License UpdatedOct 11, 2020 -
dref Public
Forked from FSecureLABS/drefDNS Rebinding Exploitation Framework
JavaScript UpdatedOct 1, 2020 -
icannTLD Public
Forked from corelight/icannTLDZeek script using the official ICANN Top-Level Domain (TLD) list with the Input Framework to extract the relevant information from a DNS query and mark whether it's trusted or not. The source of th…
Zeek Other UpdatedAug 5, 2020 -
Dashboards-Splunk-DNS-Hunting-Beaconing Public
Forked from corelight/Dashboards-Splunk-DNS-Hunting-BeaconingDNS Dashboard for hunting and identifying beaconing
UpdatedJul 29, 2020 -
zeek-attack Public
Forked from mjmcphee/zeek-attackGathering of scripts that explore using Zeek to detect MITRE ATT&CK techniques.
Zeek MIT License UpdatedMay 22, 2020 -
DomainFrontingLists Public
Forked from vysecurity/DomainFrontingListsA list of Domain Frontable Domains by CDN
UpdatedApr 26, 2020 -
ldap-analyzer Public
Forked from ZikyHD/ldap-analyzerBro analyzer for LDAP write operations
JavaScript The Unlicense UpdatedMar 27, 2020 -
metasploit-framework Public
Forked from jamesbarlow/metasploit-frameworkMetasploit Framework
Ruby Other UpdatedJan 11, 2017 -
icmptunnel Public
Forked from jamesbarlow/icmptunnelTunnel IP over ICMP.
C MIT License UpdatedJul 13, 2016 -