hunting-rules

Network anomaly detector

Provides Suricata IDS alert rules for detecting network anomalies

Suricata rules for network anomaly detection

GitHub

154 stars
16 watching
42 forks
last commit: almost 2 years ago
Linked from 1 awesome list

anomaly-detectioncyber-threat-intelligencecybersecurityidslateral-movementnetwork-monitoringnetwork-securitynsmsuricatasuricata-rulethreat-huntingthreat-intelligence

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
aleksibovellan/opnsense-suricata-nmapsCustomized Suricata detection rules to identify NMAP scan types59
al0ne/suricata-rulesA repository of high-quality Suricata IDS rules for detecting various malicious activities and behaviors.1,140
quadrantsec/suricata-rulesA collection of rules and configuration files for Suricata, a network traffic analysis tool5
stamusnetworks/sciriusA web-based interface for managing Suricata rulesets and threat hunting.636
stamusnetworks/kts7Templates and dashboards for threat hunting with Suricata IDPS/NSM and the ELK 7 stack40
business-science/anomalizeA package providing functions to decompose and detect anomalies in time series data339
stamusnetworks/selksAn integrated security monitoring platform using Suricata and Elasticsearch to analyze network traffic and alerts1,492
nathanielc/morgothAn anomaly detection framework for flexible and efficient metric analysis280
sbousseaden/slidesCollection of resources and concepts for threat hunting and detection engineering.372
sebdraven/iocmiteAutomates importing threat intelligence data into Suricata's surveillance system37
sbasu7241/aws-threat-simulation-and-detectionThis repository documents the simulation and detection of various AWS attack scenarios using Stratus Red Team and SumoLogic for logging and analysis.284
johnnyxmas/scancannonAutomated network vulnerability scanning and reconnaissance tool433
orobix/visual-feature-attribution-using-wasserstein-gans-pytorchA PyTorch implementation of a feature attribution technique using Wasserstein Generative Adversarial Networks for anomaly detection in medical images.93
neo23x0/rulesA centralized repository of Yara rules for detecting malware and other malicious activities.10
klingerko/nids-rule-libraryA collection of various rulesets for network intrusion detection systems22