dizhaung's repositories

amaroq

Puma Security's Amaroq is a vulnerability aggregation, orchestration, and correlation engine for network and product security tools.

License:MPL-2.0Stargazers:0Issues:0Issues:0

async-profiler

Sampling CPU and HEAP profiler for Java featuring AsyncGetCallTrace + perf_events

Language:C++License:Apache-2.0Stargazers:0Issues:0Issues:0

catalyst

Catalyst is an open source SOAR system that helps to automate alert handling and incident response processes

Language:GoLicense:AGPL-3.0Stargazers:0Issues:0Issues:0

cmon

NIST Information Security Continuous Monitoring (ISCM) and configuration baseline data collector

Language:GoLicense:GPL-3.0Stargazers:0Issues:0Issues:0

concord

Concord - workflow orchestration and continuous deployment management

Language:JavaLicense:NOASSERTIONStargazers:0Issues:0Issues:0

content

Security automation content in SCAP, Bash, Ansible, and other formats

License:NOASSERTIONStargazers:0Issues:0Issues:0

crowflag

Nmap's XML result parse and NVD's CPE correlation to search CVE.

Stargazers:0Issues:0Issues:0

Drain3

Drain log template miner in Python3

Language:PythonLicense:NOASSERTIONStargazers:0Issues:0Issues:0

elastalert-server

ElastAlert that exposes REST API's for manipulating rules and alerts

Language:JavaScriptLicense:NOASSERTIONStargazers:0Issues:0Issues:0

elastalert2

ElastAlert 2 is a continuation of the original yelp/elastalert project. Pull requests are appreciated!

Language:PythonLicense:Apache-2.0Stargazers:0Issues:0Issues:0
Language:PythonStargazers:0Issues:0Issues:0

Elkeid-HUB

Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the community edition) data processing. The original intention is to solve complex data/event processing and external system linkage requirements through standardized rules.

License:NOASSERTIONStargazers:0Issues:0Issues:0

esProc

esProc SPL is a scripting language for data processing, with well-designed rich library functions and powerful syntax, which can be executed in a Java program through JDBC interface and computing independently.

License:Apache-2.0Stargazers:0Issues:0Issues:0

FingerprintHub

侦查守卫(ObserverWard)的指纹库

License:MITStargazers:0Issues:0Issues:0

go-mysql

a powerful mysql toolset with Go

Language:GoLicense:MITStargazers:0Issues:0Issues:0

ICS-Hacking

This repository is focused on cybersecurity in the industrial world. Many industrial communication protocols and equipment is investigated and pentested

Language:CLicense:GPL-3.0Stargazers:0Issues:0Issues:0

insightconnect-plugins

Plugin source code for the InsightConnect SOAR product, developer documentation at https://docs.rapid7.com/insightconnect/getting-started

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

insightconnect-workflows

Community workflows for the InsightConnect SOAR product

License:MITStargazers:0Issues:0Issues:0

marauder

Marauder is an open source SIEM platform

Language:JavaLicense:GPL-2.0Stargazers:0Issues:2Issues:0

MISP-tools

Import CrowdStrike Threat Intelligence into your instance of MISP

License:MITStargazers:0Issues:0Issues:0

modbus-tk

Create Modbus app easily with Python

Language:PythonLicense:NOASSERTIONStargazers:0Issues:0Issues:0

pmacct

pmacct is a small set of multi-purpose passive network monitoring tools [NetFlow IPFIX sFlow libpcap BGP BMP RPKI IGP Streaming Telemetry].

Language:CLicense:NOASSERTIONStargazers:0Issues:0Issues:0

praeco

Elasticsearch alerting made simple.

License:GPL-3.0Stargazers:0Issues:0Issues:0

project-killchain

Welcome to Project KillChain, a comprehensive GitHub repository for Red and Blue Teams. This repository houses tools, scripts, techniques, and Indicators of Compromise (IOCs) aiding in cybersecurity operations. It facilitates penetration testing, incident response, digital forensics, and threat hunting.

Stargazers:0Issues:0Issues:0

resilient-community-apps

Source code for IBM SOAR Apps that are available on our App Exchange

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

resilient-python-api

Python Library for the IBM SOAR REST API, a Python SDK for developing Apps for IBM SOAR and more...

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

universal-connectors

A collection of Universal connector plug-ins for IBM Guardium Data Protection and IBM Guardium Insights. A universal connector allows Guardium customers to digest data activity events from various data sources and to quickly develop such a plug-in, if required.

License:Apache-2.0Stargazers:0Issues:0Issues:0
Language:JavaLicense:AGPL-3.0Stargazers:0Issues:0Issues:0

velociraptor

Digging Deeper....

License:NOASSERTIONStargazers:0Issues:0Issues:0

yeti

Your Everyday Threat Intelligence

License:Apache-2.0Stargazers:0Issues:0Issues:0