EricGershman / auditd-examples
Collection of Auditd Examples and Presentations
☆82Updated 4 years ago
Alternatives and similar repositories for auditd-examples:
Users that are interested in auditd-examples are comparing it to the libraries listed below
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 6 years ago
- Common Vulnerabilities and Exposures - Portal☆84Updated 7 years ago
- Bro scripts to be shared with the community☆109Updated 11 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- Automatic firewall rule orchestator.☆83Updated 7 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- The Official Github Repository of Daemonlogger☆21Updated 3 years ago
- first commit☆20Updated last year
- Script for generating Bro intel files from pdf or html reports☆76Updated 9 years ago
- Security Onion Elastic Stack☆46Updated 4 years ago
- ☆75Updated 3 years ago
- **BETA** A simple buildscript for network security monitoring on RHEL/CentOS☆31Updated 7 years ago
- ☆85Updated 11 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 4 years ago
- Find ssh keys with no passwords and try them against a bunch of hosts.☆46Updated 9 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 9 months ago
- This repo contains all of my OS hardening scripts☆68Updated 7 years ago
- A collection of Ansible roles for automating infosec builds.☆92Updated 7 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- A python wrapper around https://cve.circl.lu.☆55Updated 9 months ago
- Puppet module for Auditd☆40Updated 4 years ago
- ☆140Updated 8 months ago
- Things to know when DFIR occurs near a vault deployment.☆43Updated 6 years ago
- Dashboards and loader for ROCK NSM dashboards☆48Updated last year
- Exfiltrate files via DNS☆96Updated 11 years ago
- Testing/collecting some container breakouts☆93Updated 5 years ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆161Updated 4 years ago