Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files
☆44May 9, 2024Updated last year
Alternatives and similar repositories for flow-indexer
Users that are interested in flow-indexer are comparing it to the libraries listed below
Sorting:
- (OBSOLETE) Plugins for Bro☆53Sep 13, 2017Updated 8 years ago
- A program that uses xapian to index the flat file databases used by nfdump or flow-tools☆36Mar 26, 2018Updated 7 years ago
- The Compressed Pcap Packet Indexing Program☆29Nov 10, 2015Updated 10 years ago
- Set of scripts to index PCAP files and retrieve packets☆14Sep 10, 2015Updated 10 years ago
- Passive DNS collection using Zeek☆182Jun 2, 2023Updated 2 years ago
- Bro IDS programs collection.☆146Oct 16, 2019Updated 6 years ago
- Isolated, Scalable, & Lightweight Environment for Training☆111Jun 24, 2019Updated 6 years ago
- A collection of Bro scripts I've written☆41Jun 5, 2015Updated 10 years ago
- Broctl plugin for automatically executing 'setcap' on each node after an install☆13Dec 18, 2020Updated 5 years ago
- PacketSled's Bro AMQP Writer Plugin☆11Aug 5, 2016Updated 9 years ago
- viewssld is a free, open source, non-terminating SSLv2/SSLv3/TLS traffic decryption daemon for Snort, and other Network Intrusion Detecti…☆74Aug 13, 2017Updated 8 years ago
- Full packet capture with flow cutoff, rotation, and compression☆15Sep 18, 2018Updated 7 years ago
- scan-detection policies for bro☆16Jan 16, 2025Updated last year
- Bro Intel Feed Linter☆26Aug 30, 2019Updated 6 years ago
- Dockerfiles for NSM tools☆84Apr 14, 2017Updated 8 years ago
- Expandable Defensive Cyber Operations Platform☆44Sep 28, 2022Updated 3 years ago
- Plugin based information gathering library☆28May 4, 2023Updated 2 years ago
- integrating bro into yara☆33Dec 9, 2014Updated 11 years ago
- Suricata Extreme Performance Tuning guide☆213Mar 15, 2018Updated 7 years ago
- Ready to run scripts for network analysis☆91Mar 20, 2025Updated 11 months ago
- Analysis scripts for the Bro Intrusion Detection System☆59Feb 26, 2014Updated 12 years ago
- Detect Phishing with Bro IDS☆18Feb 1, 2017Updated 9 years ago
- Testimony is a single-machine, multi-process architecture for sharing AF_PACKET data across processes, allowsing packets to be copied fro…☆109Aug 6, 2021Updated 4 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Nov 29, 2017Updated 8 years ago
- Extract files from network traffic with Zeek.☆102Mar 17, 2020Updated 5 years ago
- ☆24Mar 29, 2020Updated 5 years ago
- No elephant flows - flow shunting for Arista switches using EOS API☆27Apr 27, 2021Updated 4 years ago
- Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark☆449Jan 16, 2024Updated 2 years ago
- The default package source of the Zeek Package Manager. Wrote a package? See the README for how to get it included.☆144Feb 19, 2026Updated last week
- Bro/Zeek integration with osquery☆93Nov 2, 2020Updated 5 years ago
- ☆11Oct 16, 2022Updated 3 years ago
- Laika BOSS: Object Scanning System☆751Dec 16, 2024Updated last year
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25May 19, 2022Updated 3 years ago
- Connection Tracker is a passive network connection tracker for profiling, history, auditing and network discovery.☆47Aug 6, 2017Updated 8 years ago
- Compare multiple log formats against malware reputation lists.☆88Jul 27, 2017Updated 8 years ago
- Bro scripts to be shared with the community☆110Mar 6, 2013Updated 12 years ago
- Display of cisco router Interface list using django, also has a function to switch of or switch on the interface.☆14Dec 8, 2022Updated 3 years ago
- IPFIXify reads ordinary text based log files, receives syslogs, parses Windows EventLogs, collects System Metrics, and more. Once collect…☆12Mar 6, 2018Updated 7 years ago
- Extensions for Zeek's Intelligence Framework.☆11Mar 1, 2022Updated 4 years ago