ameihm0912 / geomodel
IP geolocation for authentication events with MozDef
☆10Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for geomodel
- Isolated, Scalable, & Lightweight Environment for Training☆111Updated 5 years ago
- Bro/Zeek integration with osquery☆95Updated 4 years ago
- Docker container for MISP☆96Updated 6 years ago
- Script for generating Bro intel files from pdf or html reports☆75Updated 8 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 7 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- Ops-Trust Platform - Portal☆21Updated 8 years ago
- ☆24Updated 4 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Dockerfiles for NSM tools☆84Updated 7 years ago
- Meeting notes☆15Updated 8 years ago
- Logstash Input plugin by Blueliv☆28Updated last year
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 6 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated 10 months ago
- ☆64Updated 2 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 7 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 10 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 6 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 6 months ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 10 years ago
- Push "BAD" IPs/Networks into QRadar's "Remote Networks", tag them properly, and use them!☆18Updated 11 years ago
- An OpenTAXII Configuration for MISP☆80Updated 2 years ago
- ☆72Updated 3 years ago
- ☆38Updated 6 years ago