JustinAzoff / zeek-clickhouse
☆12Updated 3 years ago
Related projects: ⓘ
- Kafka connector to sync Zed lakes to and from Kafka topics☆18Updated 3 months ago
- IceDB S3 Proxy to trick S3 clients into only seeing alive files☆12Updated 8 months ago
- A golang JSON canonicalization scheme library based on RFC 8785☆19Updated 11 months ago
- Dockerized Zeek☆10Updated 6 months ago
- Zeek support for Community ID flow hashing.☆32Updated last year
- A Spicy protocol analyzer for WireGuard☆27Updated 4 years ago
- ☆15Updated last year
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆85Updated 4 months ago
- A pure Go library for working with Structured Threat Information Expression (STIX™) version 2.x data☆22Updated 5 months ago
- Rust implementation of the DCSO Bloom filter☆26Updated last month
- A Lua helper library for creating network protocol dissectors☆13Updated 3 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆33Updated 3 weeks ago
- Running ClickHouse like it's BigQuery☆37Updated last year
- Bro script package to create JSON formatted logs to stream into data analysis systems.☆27Updated 9 months ago
- Convert regular expressions to trigram queries in the spirit of Google's codesearch.☆22Updated last year
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆32Updated this week
- ☆52Updated this week
- flexible, structured event replication format for DNS servers (Protocol Buffers schema)☆24Updated 6 months ago
- A library implementing a generic SQL like query language.☆19Updated last month
- This repo aims to offer a packet flow tracer based on bpf☆13Updated 4 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 4 months ago
- ☆9Updated 4 years ago
- Generate network maps from packet captures☆30Updated 5 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated 8 months ago
- Open source endpoint agent providing host information to Zeek. [v2]☆61Updated this week
- A Golang API for TheHive☆13Updated 4 years ago
- aggregate IP flow data for storage in a ClickHouse database☆20Updated 5 months ago
- Architecture - design and implementation of the D4 project architecture☆16Updated 3 years ago
- Collects many small insterts to ClickHouse and send in big inserts☆11Updated 2 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆50Updated 2 months ago