JustinAzoff / flow-indexer
Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files
☆44Updated 10 months ago
Alternatives and similar repositories for flow-indexer:
Users that are interested in flow-indexer are comparing it to the libraries listed below
- ☆23Updated 4 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated last year
- module for osquery to load Bro logs into tables☆28Updated 9 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 7 years ago
- Bro Snippets☆21Updated 10 years ago
- Bro Intel Feed Linter☆26Updated 5 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- scan-detection policies for bro☆15Updated 2 months ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- A RESTful API frontend for Stenographer☆54Updated 2 years ago
- Broctl plugin for automatically executing 'setcap' on each node after an install☆13Updated 4 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- Bro script package to create JSON formatted logs to stream into data analysis systems.☆28Updated last year
- Bro-IDS scripts☆50Updated 8 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Dockerfiles for NSM tools☆84Updated 7 years ago
- ☆71Updated 3 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 8 years ago
- bro.vim - A simple plugin for working with the bro scripting languages.☆22Updated 5 years ago
- Zeek support for Community ID flow hashing.☆35Updated last year
- Detect Phishing with Bro IDS☆18Updated 8 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- ☆16Updated 5 years ago
- Script for generating Bro intel files from pdf or html reports☆76Updated 9 years ago
- ☆14Updated 11 months ago
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25Updated 2 years ago
- A program that uses xapian to index the flat file databases used by nfdump or flow-tools☆36Updated 6 years ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Updated 4 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- The Bro/Zeek language cheat sheet☆52Updated 12 years ago