ChopShop Logo

ChopShop

0
Free
Visit Website

ChopShop is a MITRE developed framework to aid analysts in the creation and execution of pynids based decoders and detectors of APT tradecraft. Note that ChopShop is still in perpetual beta and is dependent on libnids/pynids for the majority of its underlying functionality. Documentation for ChopShop can be found on ReadTheDocs. Note: There is a known issue when running ChopShop on Ubuntu where the version of pynids obtained via apt causes an ImportError. Per https://bugs.launchpad.net/ubuntu/+source/python-nids/+bug/795991, this issue affects some variants of at least 11.10 and 12.04. A workaround is to compile pynids from source which can be obtained from https://github.com/MITRECND/pynids/.

FEATURES

ALTERNATIVES

Arkime is an open-source network capture and analysis tool that provides comprehensive network visibility, facilitating swift identification and resolution of security and network issues.

Fake SSH server that sends push notifications for login attempts

DNS spoofer tool for redirecting DNS lookup requests.

Romana automates cloud native network creation and secures applications with a distributed firewall.

Scan the internet for publicly exposed network components

Open-source set of libraries and drivers to accelerate network performance.

A command line tool for running SQL queries on PCAP files with various output options and a simplistic web-server.

A script for extracting network metadata and fingerprints such as JA3 and HASSH from packet capture files or live network traffic.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved