alphasoc / nfr
A lightweight tool to score network traffic and flag anomalies
☆123Updated 9 months ago
Alternatives and similar repositories for nfr:
Users that are interested in nfr are comparing it to the libraries listed below
- How to Zeek Sysmon Logs!☆101Updated 3 years ago
- Ready to run scripts for network analysis☆88Updated last month
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Tool for managing Zeek deployments.☆56Updated 2 weeks ago
- Rule sets for Sagan☆103Updated 4 years ago
- Passive DNS collection using Zeek☆182Updated last year
- PassiveDNS in Go☆125Updated 5 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆175Updated 4 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆123Updated 3 years ago
- Web service for scanning pcaps with snort☆109Updated 6 years ago
- Python API Client for Cortex☆32Updated 3 years ago
- Core elements of the Modern Honey Network implemented in Docker☆34Updated 3 years ago
- A website and framework for testing NIDS detection☆57Updated 3 years ago
- This project is no longer maintained. There's a successor at https://github.com/zeek/zeek-agent-v2☆123Updated 4 years ago
- Wireshark plugin to display Suricata analysis info☆94Updated 3 years ago
- Zeek support for Community ID flow hashing.☆35Updated last year
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...☆72Updated 6 years ago
- Security Onion Elastic Stack☆46Updated 4 years ago
- Threat Alert Logic Repository☆92Updated 6 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆104Updated 11 months ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- ☆38Updated 6 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 11 months ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 11 months ago
- Dashboards and loader for ROCK NSM dashboards☆48Updated 2 years ago
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆110Updated last year
- Common Vulnerabilities and Exposures - Portal. Archived and now replaced by vulnerability-lookup.org☆85Updated last month
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- simple YARA-based IOC scanner☆169Updated 2 months ago