JustinAzoff / flow-indexer
Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files
☆44Updated 9 months ago
Alternatives and similar repositories for flow-indexer:
Users that are interested in flow-indexer are comparing it to the libraries listed below
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated last year
- ☆23Updated 4 years ago
- Bro Snippets☆21Updated 10 years ago
- module for osquery to load Bro logs into tables☆28Updated 9 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- scan-detection policies for bro☆15Updated last month
- Bro Intel Feed Linter☆26Updated 5 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 7 years ago
- bro.vim - A simple plugin for working with the bro scripting languages.☆22Updated 5 years ago
- ☆71Updated 3 years ago
- A program that uses xapian to index the flat file databases used by nfdump or flow-tools☆36Updated 6 years ago
- ☆15Updated 10 months ago
- brocon-15 scripts☆13Updated 7 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- Broctl plugin for automatically executing 'setcap' on each node after an install☆13Updated 4 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- ☆24Updated 5 years ago
- Passive DNS visualization and Passive DNS server toolkit☆35Updated 12 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- Zeek support for Community ID flow hashing.☆35Updated last year
- A collection of Bro scripts I've written☆40Updated 9 years ago
- A package manager for Zeek☆44Updated 2 months ago
- Dockerfiles for NSM tools☆84Updated 7 years ago
- Detect Phishing with Bro IDS☆18Updated 8 years ago
- ☆28Updated 7 years ago
- Script for generating Bro intel files from pdf or html reports☆76Updated 9 years ago
- A framework that correlates Bro events☆18Updated 11 years ago