Extensions for Zeek's Intelligence Framework.
☆11Mar 1, 2022Updated 4 years ago
Alternatives and similar repositories for intel-extensions
Users that are interested in intel-extensions are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Enables Zeek to communicate with Tenzir☆11Jul 20, 2023Updated 2 years ago
- Set your logs on fire with Emoji-🔥!☆15Oct 9, 2020Updated 5 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 5 years ago
- Bro Intel Feed Linter☆26Aug 30, 2019Updated 6 years ago
- Bro/Zeek integration with osquery☆93Nov 2, 2020Updated 5 years ago
- ☆16Feb 13, 2020Updated 6 years ago
- module for osquery to load Bro logs into tables☆28Apr 28, 2015Updated 10 years ago
- Bro Detection Scripts☆10Mar 9, 2021Updated 5 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Jun 20, 2023Updated 2 years ago
- Zeek package to generate a SMB client fingerprint☆27May 5, 2020Updated 5 years ago
- Plugin for Zeek/Bro which provides http2 decoder/analyzer☆30Jun 11, 2024Updated last year
- Add POST body excerpt to Bro's HTTP log☆14Dec 10, 2025Updated 3 months ago
- This module detects HTTP requests that are non RFC compliant and used for smuggling☆12Mar 16, 2023Updated 3 years ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Oct 15, 2020Updated 5 years ago
- scan-detection policies for bro☆16Jan 16, 2025Updated last year
- Go implementation of the Community ID flow hashing standard☆22Apr 17, 2025Updated 11 months ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Jul 12, 2021Updated 4 years ago
- line based tcp load balancing proxy.☆14Jun 18, 2024Updated last year
- Zeek package to detect Zerologon☆11Nov 10, 2021Updated 4 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44May 9, 2024Updated last year
- A Spicy protocol analyzer for WireGuard☆29Aug 11, 2020Updated 5 years ago
- ☆16Dec 15, 2025Updated 3 months ago
- ☆18Dec 20, 2024Updated last year
- A package manager for Zeek☆47Mar 5, 2026Updated 2 weeks ago
- A Zeek package that detects Zoom logins and meeting joins☆12Apr 15, 2020Updated 5 years ago
- Including Haskell, R, Julia,Python and Jupyter Kernels generated by Nix☆13Mar 6, 2023Updated 3 years ago
- ☆24Mar 29, 2020Updated 5 years ago
- Zeek support for Community ID flow hashing.☆36Jul 11, 2023Updated 2 years ago
- Zeek package for detecting the Eternal* exploits and a set of SMBv1 protocol violations.☆19Aug 21, 2025Updated 7 months ago
- ☆21Oct 16, 2021Updated 4 years ago
- Kafka connector to sync Zed lakes to and from Kafka topics☆18Dec 4, 2025Updated 3 months ago
- A Zeek plugin to POST logs over HTTP.☆13Feb 10, 2020Updated 6 years ago
- Extracting and analyzing URLs from Emails for phishing events☆21Oct 22, 2020Updated 5 years ago
- Lambda handler for Yelp's ElastAlert☆14Feb 1, 2019Updated 7 years ago
- Run zeek with zeekctl in docker☆63Sep 12, 2024Updated last year
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25May 19, 2022Updated 3 years ago
- Zeek package for tracking long connections to report them before they have completed.☆31Nov 25, 2025Updated 3 months ago
- Use AMQP broker to send or receive messages via FluentD☆15Jul 12, 2020Updated 5 years ago
- Collection of AWS helper scripts.☆13Jan 15, 2018Updated 8 years ago