MISP
Threat intelligence · Luxembourg
Read the tool profileDocumented support
Exports indicators in Suricata rule format. This describes rule export, not a bundled Suricata sensor.
An independent tool index
for incident response teams
Documented exchange with Suricata, such as rule output or event ingestion. Read the profile for the precise scope.
Filter these toolsEach entry describes the documented operation and links to its source. A format reference, an optional connector and built-in execution are different capabilities. Check the note before shortlisting.
Confirm your product version, edition, connector and access requirements in the upstream instructions. These listings record documentation, not a tested configuration. Read the evidence standard.
4 tools with documented Suricata integration evidence.
Threat intelligence · Luxembourg
Read the tool profileExports indicators in Suricata rule format. This describes rule export, not a bundled Suricata sensor.
Threat intelligence · Italy
Read the tool profileThe Suricata analyzer inspects submitted PCAP files with the Suricata engine and IDS signatures.
Detection and monitoring · Germany
Read the tool profileProvides a Suricata container alongside honeypots for network security monitoring. Availability depends on the selected deployment configuration.
Feed automation · Germany
Read the tool profileThe read_suricata operator parses Suricata EVE JSON from files or streams into structured events. This is log ingestion, not execution of Suricata detection rules.
A missing tool may support this feature without having been checked in this research pass.
Send a source or correction