Skip to content
Change the repository type filter

All

    Repositories list

    • Standard-Format Threat Intelligence Feeds
      2112710Updated Feb 3, 2026Feb 3, 2026
    • Zeek-Formatted Threat Intelligence Feeds
      Zeek
      4838300Updated Feb 3, 2026Feb 3, 2026
    • ICSNPP-LISTENERS
      Python
      0100Updated Aug 12, 2025Aug 12, 2025
    • Zeek-Formatted Ransomware File Name Extensions
      4300Updated Nov 14, 2023Nov 14, 2023
    • Zeek Intelligence Feed Modifier
      Python
      0100Updated Mar 27, 2023Mar 27, 2023
    • OSINT Tools for querying CIRCL Passive DNS and SSL APIs
      Python
      0000Updated Mar 17, 2023Mar 17, 2023
    • Extract files from network traffic with Zeek.
      Zeek
      47000Updated Sep 30, 2021Sep 30, 2021
    • Bro Detection Scripts
      Zeek
      41000Updated Mar 9, 2021Mar 9, 2021
    • Created or Collected Suricata Signatures for Public Use.
      1200Updated Dec 16, 2020Dec 16, 2020
    • SecLists

      Public
      SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types i…
      PHP
      25k100Updated Nov 11, 2020Nov 11, 2020
    • bzar

      Public
      A set of Zeek scripts to detect ATT&CK techniques.
      Zeek
      84000Updated Nov 9, 2020Nov 9, 2020
    • A Python3 utility for parsing input into a Zeek threat intelligence feed.
      Python
      3700Updated Apr 24, 2020Apr 24, 2020
    • o365beat

      Public
      Elastic Beat for fetching and shipping Office 365 audit events
      Go
      27000Updated Mar 4, 2020Mar 4, 2020
    • This is a collection of legal wording and documentation used for physical security assessments. The goal is to hopefully allow this as a template for other comp…
      102000Updated Nov 20, 2019Nov 20, 2019
    • nghttp2

      Public
      nghttp2 - HTTP/2 C Library and tools
      C++
      931000Updated Sep 4, 2019Sep 4, 2019
    • Send events from G Suite to McAfee SIEM
      Python
      7000Updated Aug 23, 2019Aug 23, 2019
    • bro-http2

      Public
      Plugin for Zeek/Bro which provides http2 decoder/analyzer
      C++
      22000Updated Apr 12, 2019Apr 12, 2019
    • ptf

      Public
      The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.
      Python
      1.3k400Updated Aug 1, 2018Aug 1, 2018