Scribery / aushape
A library and a tool for converting audit logs to XML and JSON
☆45Updated 7 years ago
Alternatives and similar repositories for aushape:
Users that are interested in aushape are comparing it to the libraries listed below
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated 3 months ago
- ☆42Updated 4 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 10 months ago
- Tool for managing Zeek deployments.☆54Updated this week
- ☆10Updated 4 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Kibana 5 Templates for Suricata IDPS☆43Updated 6 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆51Updated this week
- Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, S…☆16Updated 3 years ago
- Manages continuous scans of your infrastructure☆105Updated 3 years ago
- A starter-kit for a source-controlled, CLI-based osquery management workflow.☆30Updated 6 years ago
- Zeek package for tracking long connections to report them before they have completed.☆30Updated last month
- Puppet module for Auditd☆40Updated 4 years ago
- CEF plugin for audisp (Linux Audit)☆23Updated 8 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated last month
- server for indexing and querying passive DNS observations☆45Updated this week
- setup zeek, previously Bro IDS☆18Updated 3 months ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated last year
- This is an R shiny app that visualizes audit data using many tools all in one app.☆34Updated 3 years ago
- from http://www.pc-tools.net/unix/grepcidr/☆90Updated 7 years ago
- Expandable Defensive Cyber Operations Platform☆43Updated 2 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆102Updated 9 months ago
- Collection of Auditd Examples and Presentations☆83Updated 4 years ago
- Syslog Deduplicator☆16Updated 11 years ago
- An open standard for hashing network flows into identifiers, a.k.a "Community IDs".☆176Updated 6 months ago
- Foreman plug-in for displaying OpenSCAP audit reports☆41Updated this week
- Understand OVAL results in a blink of an eye☆35Updated 2 years ago
- Splunk App for Linux Auditd☆57Updated 3 years ago
- Exporter for exporting osquery query results to prometheus☆58Updated 4 years ago
- OPNids GUI, API and systems backend☆34Updated 5 years ago