
spookyssl-pcaps
PCAPs and Suricata signatures for detecting OpenSSL CVE-2022-3602 exploitation attempts, including malicious client/server traffic and legitimate…

PCAPs and Suricata signatures for detecting OpenSSL CVE-2022-3602 exploitation attempts, including malicious client/server traffic and legitimate…

Vulnerability detection scripts for the n8n product.

Repo containing lua scripts and PCAP to find CVE-2020-0601 exploit attempts via network traffic

Zeek package to detect CVE-2022-21907 HTTP exploit attempts by analyzing packet captures for malformed requests and triggering alerts.

A network detection package for CVE-2020-16898 (Windows TCP/IP Remote Code Execution Vulnerability)

Malcom - Malware Communications Analyzer

FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network traffic

Lua plugin to extract data from Wireshark and convert it into MISP format

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…