celzero / rethink-app

DNS over HTTPS / DNS over Tor / DNSCrypt client, WireGuard proxifier, firewall, and connection tracker for Android.
https://rethinkfirewall.com/
Apache License 2.0
2.89k stars 147 forks source link

IoC with Zeek and Suricata #164

Open ignoramous opened 3 years ago

ignoramous commented 3 years ago

Indicators of Compromise, similar to what's done by TinyCheck: https://github.com/KasperskyLab/TinyCheck

See also: https://github.com/VirusTotal/yara

ignoramous commented 2 years ago

And: https://github.com/stamparm/maltrail

ghost commented 2 years ago

And: https://github.com/stamparm/maltrail

Nice feature to add on RDNS 😍😍😍😍😍

ignoramous commented 1 year ago

See: