Pinned Repositories
c_icap_yara
C-ICAP Yara module
ceplog
Log data analysis using Esper (complex event processing framework)
cuckoodroid
Cuckoodroid is a project to build components to make analysis of android applications possible with cuckoobox
deob
Experimental code to assist with javascript deobfuscation
dnslyzer
DNS traffic indexer and analyzer
honeyntp
NTP logger/honeypot
iocmap
Indicator of Compromise Mapping Service
moloch_zmq
ZMQ data explort plugin for Moloch
ndf
Network Defender Toolkit
ssim
This is an erlang implementation of ossim-server (http://alienvault.com/download-ossim) that is indended to replace original ossim server and backend storage. Note that UI does not work with this server implementation as well. The primary reasons behind this is: reliablity and scalabilty. Experimental code, do not use on productional systems.
fygrave's Repositories
fygrave/honeyntp
NTP logger/honeypot
fygrave/dnslyzer
DNS traffic indexer and analyzer
fygrave/ndf
Network Defender Toolkit
fygrave/iocmap
Indicator of Compromise Mapping Service
fygrave/ceplog
Log data analysis using Esper (complex event processing framework)
fygrave/moloch_zmq
ZMQ data explort plugin for Moloch
fygrave/ssim
This is an erlang implementation of ossim-server (http://alienvault.com/download-ossim) that is indended to replace original ossim server and backend storage. Note that UI does not work with this server implementation as well. The primary reasons behind this is: reliablity and scalabilty. Experimental code, do not use on productional systems.
fygrave/cuckoodroid
Cuckoodroid is a project to build components to make analysis of android applications possible with cuckoobox
fygrave/hntp
NTP scan logger/honeypot
fygrave/eyepkflow
EyePKFlow is an open source Passive HTTP and Yara detection platform
fygrave/splunk-search
Search Splunk for OpenIOC or CybOX content
fygrave/clj-esptool
Clojure Esper Command Line Tool (for Esper Example)
fygrave/httpbee
httpbee is a web application whacking/testing tool. Historical (released in 2007)
fygrave/node-debian
Create your own Debian/Ubuntu dpkg install packages (.deb) for any version of node.js
fygrave/riaktant
A node.js sample app that stores syslog messages in Riak Search
fygrave/AIL-framework
AIL framework - Analysis Information Leak framework
fygrave/Cortex
Powerful Observable Analysis Engine
fygrave/es-whois
Generic WHOIS server to search Elastic Search Database
fygrave/fintel
FIntel Tracking
fygrave/fygrave.github.io
fygrave.github.io
fygrave/hpassive
Passive Monitoring of HTTP traffic for recon purposes
fygrave/imap_copy
Simple tool to copy folders from one IMAP server to another server.
fygrave/intelmq
IntelMQ is a solution for CERTs to process data feeds, pastebins, tweets throught a message queue.
fygrave/kippo
Kippo - SSH Honeypot
fygrave/moloch-scripts
fygrave/nagios-plugin-elasticsearch
An ElasticSearch availability and performance monitoring plugin for Nagios
fygrave/papers
misc papers
fygrave/pdns-qof
Passive DNS Query Output Format Description
fygrave/resume
fygrave/streamlit-cheat-sheet
A cheat sheet for streamlit