Skip to content
Change the repository type filter

All

    Repositories list

    • Standard-Format Threat Intelligence Feeds
      MIT License
      1710500Updated Jan 18, 2025Jan 18, 2025
    • Zeek-Formatted Threat Intelligence Feeds
      Zeek
      MIT License
      4534700Updated Jan 18, 2025Jan 18, 2025
    • Zeek-Formatted Ransomware File Name Extensions
      MIT License
      4100Updated Nov 14, 2023Nov 14, 2023
    • Zeek Intelligence Feed Modifier
      Python
      MIT License
      0100Updated Mar 27, 2023Mar 27, 2023
    • OSINT Tools for querying CIRCL Passive DNS and SSL APIs
      Python
      MIT License
      0000Updated Mar 17, 2023Mar 17, 2023
    • Extract files from network traffic with Zeek.
      Zeek
      BSD 3-Clause "New" or "Revised" License
      47000Updated Sep 30, 2021Sep 30, 2021
    • Bro Detection Scripts
      Zeek
      41000Updated Mar 9, 2021Mar 9, 2021
    • Created or Collected Suricata Signatures for Public Use.
      1200Updated Dec 16, 2020Dec 16, 2020
    • SecLists

      Public
      SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
      PHP
      MIT License
      24k100Updated Nov 11, 2020Nov 11, 2020
    • bzar

      Public
      A set of Zeek scripts to detect ATT&CK techniques.
      Zeek
      BSD 3-Clause "New" or "Revised" License
      74000Updated Nov 9, 2020Nov 9, 2020
    • A Python3 utility for parsing input into a Zeek threat intelligence feed.
      Python
      MIT License
      3600Updated Apr 24, 2020Apr 24, 2020
    • o365beat

      Public
      Elastic Beat for fetching and shipping Office 365 audit events
      Go
      Other
      27000Updated Mar 4, 2020Mar 4, 2020
    • This is a collection of legal wording and documentation used for physical security assessments. The goal is to hopefully allow this as a template for other companies to use and to protect themselves when conducting physical security assessments.
      The Unlicense
      103000Updated Nov 20, 2019Nov 20, 2019
    • nghttp2

      Public
      nghttp2 - HTTP/2 C Library and tools
      C++
      Other
      882000Updated Sep 4, 2019Sep 4, 2019
    • Send events from G Suite to McAfee SIEM
      Python
      MIT License
      7000Updated Aug 23, 2019Aug 23, 2019
    • bro-http2

      Public
      Plugin for Zeek/Bro which provides http2 decoder/analyzer
      C++
      Other
      20000Updated Apr 12, 2019Apr 12, 2019
    • ptf

      Public
      The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.
      Python
      1.2k400Updated Aug 1, 2018Aug 1, 2018