ChopShop Logo

ChopShop

0
Free
Visit Website

ChopShop is a MITRE developed framework to aid analysts in the creation and execution of pynids based decoders and detectors of APT tradecraft. Note that ChopShop is still in perpetual beta and is dependent on libnids/pynids for the majority of its underlying functionality. Documentation for ChopShop can be found on ReadTheDocs. Note: There is a known issue when running ChopShop on Ubuntu where the version of pynids obtained via apt causes an ImportError. Per https://bugs.launchpad.net/ubuntu/+source/python-nids/+bug/795991, this issue affects some variants of at least 11.10 and 12.04. A workaround is to compile pynids from source which can be obtained from https://github.com/MITRECND/pynids/.

FEATURES

ALTERNATIVES

A simple honeypot that opens a listening socket and waits for connection attempts, with configurable reply and event handling

A program to log login attempts on Telnet (port 23) and track the Mirai botnet

PFQ v6.2 is a functional framework for Linux optimized for efficient packet capture/transmission and in-kernel processing.

A honeypot that logs NTP packets into a Redis database to detect DDoS attempts.

Passive Network Audit Framework (PNAF) v0.1.2 provides passive network auditing capabilities and is now a project of COSMIC-Chapter of The Honeynet Project.

A tool for parsing Google Protobuf encoded blobs without the accompanying definition, providing a colored representation of the contents.

An open-source network security monitoring tool.

A tool for discovering open S3 Buckets starting from a domain using various techniques such as crawling and DNS crawling.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved