EricGershman / auditd-examples
Collection of Auditd Examples and Presentations
☆83Updated 4 years ago
Alternatives and similar repositories for auditd-examples
Users that are interested in auditd-examples are comparing it to the libraries listed below
Sorting:
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- Automatic firewall rule orchestator.☆83Updated 7 years ago
- Find ssh keys with no passwords and try them against a bunch of hosts.☆46Updated 9 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Common Vulnerabilities and Exposures - Portal. Archived and now replaced by vulnerability-lookup.org☆85Updated 2 months ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated last year
- Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...☆72Updated 6 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated 3 weeks ago
- Bro Intel Feed Linter☆26Updated 5 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- ☆71Updated 3 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 9 years ago
- Scripts that are suited for blue teams☆33Updated 9 years ago
- The Official Github Repository of Daemonlogger☆22Updated 4 years ago
- **BETA** A simple buildscript for network security monitoring on RHEL/CentOS☆31Updated 8 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- first commit☆20Updated last year
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 8 years ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆161Updated 4 years ago
- setup zeek, previously Bro IDS☆18Updated 2 weeks ago
- Bro-IDS scripts☆50Updated 8 years ago
- ☆85Updated 11 years ago
- Docker container for MISP☆96Updated 6 years ago
- Repo for autosnort scripts.☆158Updated 4 years ago
- module for osquery to load Bro logs into tables☆28Updated 10 years ago
- ☆38Updated 6 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated 3 weeks ago