OISF / suricata-trafficid
Application and service identification rules for Suricata
☆18Updated 2 years ago
Alternatives and similar repositories for suricata-trafficid:
Users that are interested in suricata-trafficid are comparing it to the libraries listed below
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- Prototype system to monitor BGP routes and alert when anomalies are identified☆14Updated 6 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆51Updated this week
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated 5 months ago
- Suricata rule and intel index☆31Updated this week
- A tools to work on suricata stats.log file.☆28Updated 9 years ago
- Last download from git://git.carnivore.it/honeytrap.git of Honytrap by Tillmann Werner☆43Updated 3 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆73Updated 8 months ago
- Pattern recognition for hosts, services, and content☆13Updated 2 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- A low interaction honeypot for the Cisco ASA component capable of detecting CVE-2018-0101, a DoS and remote code execution vulnerability.☆51Updated 6 years ago
- Library and example applications for using/abusing the information-leaky L2Trace service on Cisco switches. PSIRT Advisory: cisco-sa-2019…☆3Updated 2 years ago
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- A Yara Lua output script for Suricata☆19Updated 5 years ago
- Golang based web service to scan files with yara rules☆27Updated 7 years ago
- Community-based CybergON-powered Suricata rules☆12Updated 2 years ago
- Passive DNS server interface compliant to "Common Output Format"☆10Updated 8 years ago
- Extract TLS certificates from pcap files or network interfaces, fingerprint TLS client/server interactions with ja3/ja3s☆37Updated 5 years ago
- Network Entity Reputation Database☆34Updated last month
- Flame - Send vulnerabilities reports to SIEM☆15Updated 8 years ago
- CVE Builder script that generates STIX formatted Exploit Target objects☆18Updated 8 years ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 5 years ago
- ☆35Updated last year
- Minimalistic DNS logging tool☆43Updated 3 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆39Updated last year
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆32Updated 6 months ago
- Historical Tracking of MAC Address Assignments☆30Updated this week
- ☆12Updated 3 years ago