alienfault / ossim
Open Source Security Information and event Management
☆84Updated 9 years ago
Alternatives and similar repositories for ossim:
Users that are interested in ossim are comparing it to the libraries listed below
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆108Updated 8 months ago
- ☆99Updated 10 years ago
- The tool for updating your Suricata rules.☆262Updated last month
- Mapping NSM rules to MITRE ATT&CK☆68Updated 4 years ago
- A Zeek log writer plugin that publishes to Kafka.☆46Updated 2 weeks ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆99Updated 3 years ago
- Suricata Verification Tests - Testing Suricata Output☆104Updated this week
- Web service for scanning pcaps with snort☆108Updated 6 years ago
- Suricata rules for network anomaly detection☆154Updated last month
- A repository for OSSEC rules and decoders☆53Updated last year
- Zeek IDS Dockerfile☆100Updated 2 years ago
- Apache Metron☆59Updated 4 years ago
- Suricata IDS/IPS log analytics using the Elastic Stack.☆237Updated 3 years ago
- Alienvault ossim☆119Updated 5 years ago
- Sagan is a multi-threads, high performance log analysis engine. At it's core, Sagan similar to Suricata/Snort but with logs rather th…☆160Updated 2 months ago
- Templates for Kibana/Logstash to use with Suricata IDPS☆80Updated 8 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆167Updated last year
- Open source endpoint agent providing host information to Zeek. [v2]☆72Updated 2 months ago
- zeek-scripts☆43Updated 6 years ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆464Updated last week
- Download pcap files from http://www.malware-traffic-analysis.net/☆73Updated 7 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆23Updated last year
- Wazuh - RESTful API☆71Updated 4 months ago
- OSSEC Documentation☆137Updated last year
- Suricata rules for the new critical vulnerabilities☆80Updated 3 years ago
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆438Updated last week
- Passive Real-time Asset Detection System☆232Updated 7 months ago
- Digital Bond's IDS/IPS rules for ICS and ICS protocols.☆142Updated 4 years ago
- ☆41Updated 2 years ago