Validate if afpacket PACKET_FANOUT_HASH is working properly
☆25May 19, 2022Updated 3 years ago
Alternatives and similar repositories for can-i-use-afpacket-fanout
Users that are interested in can-i-use-afpacket-fanout are comparing it to the libraries listed below
Sorting:
- ☆24Mar 29, 2020Updated 5 years ago
- Bro scripts to monitor for new hosts within a subnet range that aren't whitelisted/vetted.☆13Jun 28, 2013Updated 12 years ago
- Automation of VPC Traffic Mirror Sessions in AWS☆35Nov 15, 2025Updated 3 months ago
- (OBSOLETE) Plugins for Bro☆53Sep 13, 2017Updated 8 years ago
- Full packet capture with flow cutoff, rotation, and compression☆15Sep 18, 2018Updated 7 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 5 years ago
- scan-detection policies for bro☆16Jan 16, 2025Updated last year
- Go implementation of the Community ID flow hashing standard☆21Apr 17, 2025Updated 10 months ago
- Set your logs on fire with Emoji-🔥!☆15Oct 9, 2020Updated 5 years ago
- ☆17Nov 12, 2017Updated 8 years ago
- ☆21Oct 16, 2021Updated 4 years ago
- Plugin providing native AF_Packet support for Zeek.☆33Oct 22, 2025Updated 4 months ago
- Scripts for Bro IDS and ELK Stack☆57Sep 2, 2015Updated 10 years ago
- A package manager for Zeek☆47Jan 8, 2026Updated 2 months ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Oct 10, 2019Updated 6 years ago
- ☆10Jun 2, 2020Updated 5 years ago
- Bro/Zeek integration with osquery☆93Nov 2, 2020Updated 5 years ago
- Set of scripts to index PCAP files and retrieve packets☆14Sep 10, 2015Updated 10 years ago
- Go eBPF Library☆12Jul 9, 2016Updated 9 years ago
- How to Zeek Sysmon Logs!☆103Feb 12, 2022Updated 4 years ago
- Zeek package for tracking long connections to report them before they have completed.☆31Nov 25, 2025Updated 3 months ago
- This module detects HTTP requests that are non RFC compliant and used for smuggling☆12Mar 16, 2023Updated 2 years ago
- Enables Zeek to communicate with Tenzir☆11Jul 20, 2023Updated 2 years ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Oct 15, 2020Updated 5 years ago
- Extensions for Zeek's Intelligence Framework.☆11Mar 1, 2022Updated 4 years ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆80Sep 13, 2023Updated 2 years ago
- DHCP Fingerprinting☆31Dec 15, 2020Updated 5 years ago
- line based tcp load balancing proxy.☆14Jun 18, 2024Updated last year
- A collection of awesome resources built for and around the Splunk Phantom platform.☆15Jul 7, 2020Updated 5 years ago
- PacketSled's Bro AMQP Writer Plugin☆11Aug 5, 2016Updated 9 years ago
- A simple way of detecting multithreaded exfiltration in Zeek.☆15May 1, 2025Updated 10 months ago
- Bro things..☆15Oct 23, 2015Updated 10 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Nov 9, 2022Updated 3 years ago
- Run zeek with zeekctl in docker☆63Sep 12, 2024Updated last year
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆15Nov 25, 2021Updated 4 years ago
- Cyber threat intelligence crates for Rust☆16Jan 22, 2024Updated 2 years ago
- Repository to provide files related to our blog articles.☆16May 26, 2025Updated 9 months ago
- Bro stuff.☆12May 24, 2016Updated 9 years ago
- Docker files for building Zeek.☆89Oct 12, 2023Updated 2 years ago