zeek-njrat-detector

zeek-njrat-detector

This detector uses two types of detection:

  1. A Spicy analyzer to detect njRAT C2.
  2. The intelligence framework to detect IOCs.

More information on how this package was created can be found at:

https://drkeithjones.com/index.php/2023/04/20/detecting-njrat-bladabindi-malware-with-zeek-zeek-roulette-1/

Package Version :