在线时间:8:00-16:00
迪恩网络APP
随时随地掌握行业动态
扫描二维码
关注迪恩网络微信公众号
开源软件名称:Cyb3r-Monk/RITA-J开源软件地址:https://github.com/Cyb3r-Monk/RITA-J开源编程语言:Jupyter Notebook 100.0%开源软件介绍:RITA (Real Intelligence Threat Analytics) in Jupyter NotebookRITA is an open source framework for network traffic analysis sponsored by Active Countermeasures RITA-J is the implementation of RITA features in Jupyter Notebook. The goal is to support all types of Firewall/Proxy/DNS logs that are in CSV, TSV, or JSON format, and make it easy to analyze, hunt and detect potential C2 activity without installing additional hardware and other components to maintain. The sample dataset was shared by Ali Alwashali (@ali_alwashali). It contains:
Features
RequirementsFirewall/Proxy logs that are in CSV or JSON format. If the logs are not parsed, parsing is required before analysis.
Acquiring Logs and Working with different log formatsThere are several ways to acquire logs.
An example for converting Fortinet logs: Fortinet CSV log ConverterThe script below may work with all log files that use key-value pair logging. InstallWill be added How to UseWill be added |
2023-10-27
2022-08-15
2022-08-17
2022-09-23
2022-08-13
请发表评论