Pinned Repositories
dnssinkholelist
dnssinkholelist is a python package focused on combining open source lists of malicious domains, dynamic dns domains, and advertisement domains that should be sinkholed/blocked.
domaininformation
domain information in JSON format
dynamic_dns_lists
Lists of Dynamic DNS Domains/FQDNs as well as lists of services/providers that offer free dynamic dns domains.
ipinformation
ip information in JSON format
malware-traffic-analysis-pcaps
malware-traffic-analysis.net PCAPs repository.
TMInfosec
Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.
WinLogsZero2Hero
This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.
neu5ron's Repositories
neu5ron/TMInfosec
Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.
neu5ron/WinLogsZero2Hero
This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.
neu5ron/es_stk
neu5ron/dynamic_dns_lists
Lists of Dynamic DNS Domains/FQDNs as well as lists of services/providers that offer free dynamic dns domains.
neu5ron/sigma-config-taxonomy-updates
neu5ron/APT_CyberCriminal_Campagin_Collections
APT & CyberCriminal Campaign Collection
neu5ron/sigma
Generic Signature Format for SIEM Systems
neu5ron/azure-docs
Open source documentation of Microsoft Azure
neu5ron/beats
:tropical_fish: Beats - Lightweight shippers for Elasticsearch & Logstash
neu5ron/bro
Bro is a powerful network analysis framework that is much different from the typical IDS you may know. Official mirror of git.bro.org/bro.git .
neu5ron/detection-hackathon-apt29
Place for resources used during the Mordor Detection hackathon event featuring APT29 ATT&CK evals datasets
neu5ron/ecs
Elastic Common Schema
neu5ron/ecs-mapping
Mapping Corelight or Zeek data to Elastic Common Schema fields
neu5ron/es3csv
Port of es2csv to Python 3
neu5ron/HELK
The Hunting ELK
neu5ron/helk-zeek
neu5ron/infosec-well-done
A few quick recipes for those that do not have much time during the day
neu5ron/jupyter2kibana
A Workflow for Data Scientists to bring Jupyter Notebook Visualizations to Kibana Dashboards
neu5ron/kibana_plugins_list
A list of Kibana Plugins
neu5ron/logstash-integration-kafka
Kafka Integration for Logstash, providing Input and Output Plugins
neu5ron/logstash-oui-scraper
ls-oui-scraper is used to download oui data from standards-oui.ieee.org
neu5ron/node-es-transformer
nodejs based (re)index and data transformation library for Elasticsearch.
neu5ron/rock
Automated deployment scripts for the ROCK NSM network hunting distribution.
neu5ron/rock-dashboards
Dashboards and loader for ROCK NSM dashboards
neu5ron/rock-docs
Documentation for ROCK NSM
neu5ron/rocky-mountain-helk
neu5ron/sysmon-config
Sysmon configuration file template with default high-quality event tracing
neu5ron/windows-itpro-docs
This is used for contributions to the Windows 10 content for IT professionals on docs.microsoft.com.
neu5ron/zeek-plugin-enip
Zeek network security monitor plugin that enables parsing of the Ethernet/IP and Common Industrial Protocol standards
neu5ron/zeek-plugin-ikev2
A IKEv2 protocol analyzer for Zeek.