Full packet capture with flow cutoff, rotation, and compression
☆15Sep 18, 2018Updated 7 years ago
Alternatives and similar repositories for gotm
Users that are interested in gotm are comparing it to the libraries listed below
Sorting:
- ☆14Jan 14, 2026Updated 2 months ago
- Cyber threat intelligence crates for Rust☆16Jan 22, 2024Updated 2 years ago
- The Auditd Framework logs and applies security policy to linux auditd data☆15Jan 26, 2018Updated 8 years ago
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆15Nov 25, 2021Updated 4 years ago
- Plugin providing native AF_Packet support for Zeek.☆33Oct 22, 2025Updated 4 months ago
- No elephant flows - flow shunting for Arista switches using EOS API☆27Apr 27, 2021Updated 4 years ago
- Dockerized Zeek☆12Mar 9, 2024Updated 2 years ago
- The Security Analyst’s Guide to Suricata☆61Apr 28, 2025Updated 10 months ago
- ☆16Dec 15, 2025Updated 3 months ago
- My timewarrior taskwarrior integration scripts☆17Mar 29, 2017Updated 8 years ago
- Zeek support for Community ID flow hashing.☆36Jul 11, 2023Updated 2 years ago
- Suricata JSON schema project☆12Jan 5, 2020Updated 6 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 5 years ago
- line based tcp load balancing proxy.☆14Jun 18, 2024Updated last year
- ☆34May 4, 2020Updated 5 years ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Oct 10, 2019Updated 6 years ago
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25May 19, 2022Updated 3 years ago
- ☆24Mar 29, 2020Updated 5 years ago
- Repository to provide files related to our blog articles.☆16May 26, 2025Updated 9 months ago
- A lens library so small in use you'd hardly notice it's there...☆26Mar 23, 2025Updated 11 months ago
- Zeek package for detecting the Eternal* exploits and a set of SMBv1 protocol violations.☆19Aug 21, 2025Updated 7 months ago
- ☆38Nov 20, 2025Updated 4 months ago
- Private Search Set (PSS) is an extension to standard Bloom filter or a standalone hash file to describe and share private set.☆16Jan 10, 2025Updated last year
- Golang Library to interact with your MISP instance☆22Sep 12, 2019Updated 6 years ago
- Corelight@Home script☆46Oct 5, 2023Updated 2 years ago
- A string_view implementation that can remember if it was a c-string once☆20Nov 16, 2020Updated 5 years ago
- Zeek package to generate a SMB client fingerprint☆27May 5, 2020Updated 5 years ago
- module for osquery to load Bro logs into tables☆28Apr 28, 2015Updated 10 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆57Nov 20, 2025Updated 4 months ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44May 9, 2024Updated last year
- A Spicy protocol analyzer for WireGuard☆29Aug 11, 2020Updated 5 years ago
- scan-detection policies for bro☆16Jan 16, 2025Updated last year
- High resolution traffic measurement tool for Linux written in Go☆19Jul 28, 2019Updated 6 years ago
- ☆14Sep 15, 2017Updated 8 years ago
- Connect - Stream - Observe - Respond | Morio provides the plumbing for your observability needs☆28Feb 18, 2026Updated last month
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Oct 12, 2020Updated 5 years ago
- Nix build Scheduler☆11Nov 24, 2025Updated 3 months ago
- S4A main repository. SaltStack states, install script and build scripts☆27Mar 9, 2026Updated last week
- This repository contains sample log data that were collected after running adversary simulations in Microsoft 365☆24Oct 9, 2024Updated last year