Active Countermeasures (activecm)

Active Countermeasures

activecm

Geek Repo

Home Page:https://www.activecountermeasures.com

Github PK Tool:Github PK Tool

Active Countermeasures's repositories

rita-legacy

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Language:GoLicense:GPL-3.0Stargazers:2500Issues:112Issues:390

BeaKer

Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana

Language:ShellLicense:GPL-3.0Stargazers:281Issues:19Issues:34

passer

Passive service locator, a python sniffer that identifies servers, clients, names and much more

Language:PythonLicense:GPL-3.0Stargazers:240Issues:13Issues:1

threat-tools

Tools for simulating threats

Language:PythonLicense:GPL-3.0Stargazers:168Issues:9Issues:1

rita

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Language:GoLicense:GPL-3.0Stargazers:118Issues:3Issues:13

espy

Endpoint detection for remote hosts for consumption by RITA and Elasticsearch

Language:GoLicense:GPL-3.0Stargazers:66Issues:8Issues:43

docker-zeek

Run zeek with zeekctl in docker

Language:ShellLicense:MITStargazers:45Issues:4Issues:13

smudge

Passive OS detection based on SYN packets without Transmitting any Data

Language:PythonLicense:GPL-3.0Stargazers:42Issues:3Issues:13

pcap-stats

Learn about a network from a pcap file or reading from an interface

Language:PythonLicense:GPL-3.0Stargazers:25Issues:3Issues:0

zcutter

Extracts fields from zeek logs, compatible with zeek-cut

Language:PythonLicense:GPL-3.0Stargazers:18Issues:2Issues:0

sniffer-template

Template for building a packet sniffer

Language:PythonLicense:GPL-3.0Stargazers:15Issues:4Issues:0

rita-bl

Real Intelligence Threat Analytics -- Blacklist Database

Language:GoLicense:GPL-3.0Stargazers:8Issues:5Issues:4

zeekcfg

A node.cfg generator for zeekctl

Language:GoLicense:MITStargazers:6Issues:3Issues:5

certificate-issues

Identifies certificate problems from Zeek ssl log files

Language:ShellLicense:GPL-3.0Stargazers:5Issues:4Issues:0

shell-lib

Shell Scripts Used Across ActiveCM Projects

Language:ShellLicense:BSD-3-ClauseStargazers:5Issues:3Issues:9

zeek-log-transport

This script ships logs from Zeek to AC-Hunter

mgosec

A Small Helper Library For Securing MongoDB Connections with Golang

Language:GoLicense:MITStargazers:4Issues:5Issues:2

safelist-tools

Tools for working with the safelist (formerly whitelist)

Language:GoLicense:GPL-3.0Stargazers:3Issues:5Issues:2

pcap-resources

Support files and tools for pcap analysis and packet capture

License:GPL-3.0Stargazers:2Issues:4Issues:0

zeek-log-clean

Delete Zeek log files until disk usage is under a given threshold

Language:ShellLicense:MITStargazers:2Issues:3Issues:1

bad-asn-list

An open source list of ASNs known to belong to cloud, managed hosting, and colo facilities.

save_json_stream

JSON TCP stream importer for RITA and AC-Hunter

Language:PythonLicense:GPL-3.0Stargazers:1Issues:4Issues:0

tcp-sig-json

Json file that holds TCP signatures for passive OS fingerprinting

Language:PythonLicense:GPL-3.0Stargazers:0Issues:4Issues:1

ACH-Zeek

Zeek installer packaged with AC-Hunter

Language:ShellStargazers:0Issues:2Issues:0

active-dns-lookup

Lookup hostnames via dns

Language:PythonLicense:GPL-3.0Stargazers:0Issues:1Issues:0

db-lib

Python database access library

Language:PythonLicense:WTFPLStargazers:0Issues:2Issues:0

get-release

Github Action to get release information based on a tag

Language:JavaScriptLicense:MITStargazers:0Issues:2Issues:0

packages

The default package source of the Zeek Package Manager

Stargazers:0Issues:2Issues:0

zeek-agent-v2

Open source endpoint agent providing host information to Zeek. [v2]

Language:C++License:NOASSERTIONStargazers:0Issues:1Issues:0