The Security Analyst’s Guide to Suricata
☆61Apr 28, 2025Updated 11 months ago
Alternatives and similar repositories for suricata-4-analysts
Users that are interested in suricata-4-analysts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆38Nov 20, 2025Updated 4 months ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆86Updated this week
- Full packet capture with flow cutoff, rotation, and compression☆15Sep 18, 2018Updated 7 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Nov 9, 2022Updated 3 years ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Oct 10, 2019Updated 6 years ago
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Packet captures of malicious traffic for analysis using Wireshark☆63Jul 10, 2023Updated 2 years ago
- ☆11Nov 26, 2025Updated 4 months ago
- A set of tools and procedures for automating NSM and NIDS deployments in AWS☆15Oct 16, 2020Updated 5 years ago
- A tools to work on suricata stats.log file.☆30Oct 14, 2015Updated 10 years ago
- A curated list of awesome things related to Suricata☆221Nov 21, 2025Updated 4 months ago
- Suricata Verification Tests - Testing Suricata Output☆118Updated this week
- Application and service identification rules for Suricata☆19Nov 7, 2022Updated 3 years ago
- Repository to provide files related to our blog articles.☆16May 26, 2025Updated 10 months ago
- Dockerized Zeek☆12Mar 9, 2024Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Private Search Set (PSS) is an extension to standard Bloom filter or a standalone hash file to describe and share private set.☆16Jan 10, 2025Updated last year
- The Stamus Networks App for Splunk allows Splunk Enterprise users to extract information and insights from both the Stamus Security Plat…☆13Jan 7, 2026Updated 2 months ago
- Meer is a "spooler" for Suricata / Sagan.☆30Jun 21, 2023Updated 2 years ago
- A very simple way to try Suricata and EveBox☆15Feb 17, 2025Updated last year
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25May 19, 2022Updated 3 years ago
- Zeek support for Community ID flow hashing.☆36Jul 11, 2023Updated 2 years ago
- A network packet synthesis language☆23Mar 18, 2026Updated last week
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆20May 25, 2022Updated 3 years ago
- MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats☆56Updated this week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆56Mar 19, 2026Updated last week
- A curated list of CTF frameworks, libraries, resources and softwares☆10Nov 11, 2015Updated 10 years ago
- Small App for reading from MHN's hpfeeds broker and writing splunk logs☆10Sep 30, 2019Updated 6 years ago
- a network packet capture compiler☆207Apr 28, 2022Updated 3 years ago
- suricata eve.json parser in Go☆15May 16, 2019Updated 6 years ago
- A Yara Lua output script for Suricata☆20Apr 7, 2019Updated 6 years ago
- Suricata rules for network anomaly detection☆183Feb 7, 2026Updated last month
- Python libary to normalize Yara signatures☆19Oct 9, 2020Updated 5 years ago
- CPU Pinning☆18Apr 16, 2021Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- pCraft is a PCAP Crafter, which creates a PCAP from an AMI scenario.☆92Apr 11, 2024Updated last year
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆96Apr 30, 2024Updated last year
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19May 11, 2021Updated 4 years ago
- Rules shared by the community from 100 Days of YARA 2024☆89Jan 1, 2025Updated last year
- Passive DNS server interface compliant to "Common Output Format"☆10Sep 19, 2016Updated 9 years ago
- Some stuff about the TCP flags field in NetFlow/IPFIX Data☆12Dec 31, 2015Updated 10 years ago
- A Python implementation of the Community ID flow hashing standard☆23Nov 29, 2023Updated 2 years ago