berthayes / cp-zeekLinks
Analyze Zeek IDS data with ksqlDB running on Confluent Platform via Docker on your laptop. Or spin up an arbitrary number of AWS hosts, each running Confluent Platform and ksqlDB for use in an instructor-led workshop.
☆11Updated 4 years ago
Alternatives and similar repositories for cp-zeek
Users that are interested in cp-zeek are comparing it to the libraries listed below
Sorting:
- ☆19Updated 3 years ago
- A Workflow for Data Scientists to bring Jupyter Notebook Visualizations to Kibana Dashboards☆45Updated 2 years ago
- Kafka connector for Splunk☆96Updated 3 weeks ago
- Sankey diagram for Kibana visualize.☆31Updated 10 months ago
- Kibana Milestones Visualization☆90Updated 2 years ago
- Geospatial UDFs for KSQL☆22Updated 4 years ago
- ☆15Updated 8 years ago
- ☆38Updated 5 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated last month
- A machine learning plugin in Open Distro for real time anomaly detection on streaming data.☆80Updated 3 years ago
- SIEM Logstash parsing for more than hundred technologies☆187Updated 2 weeks ago
- Country flag FieldFormat Plugin for Kibana 7☆18Updated 4 years ago
- Dashboards and loader for ROCK NSM dashboards☆49Updated 2 years ago
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 3 years ago
- Zeek support for Community ID flow hashing.☆37Updated 2 years ago
- Confluent s2s Demo☆10Updated 2 years ago
- RELK -- The Research Elastic Stack (Kafka, Beats, Zookeeper, Logstash, ElasticSearch, Kibana, Spark, & Jupyter -- All in Docker)☆26Updated 5 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆34Updated 2 years ago
- Data Governance app for Splunk☆12Updated last year
- A Python library to help with some common threat hunting data analysis operations☆143Updated 2 years ago
- A search command for Splunk which will allow you to search Elastic Search and display the results in the Splunk GUI☆69Updated 2 months ago
- Open-source framework to detect outliers in Elasticsearch events☆209Updated 2 years ago
- Kibana-API is an extension to Kibana that lets you tap in to the dashboard management board from your app and change the visualizations d…☆123Updated 2 years ago
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆27Updated 4 years ago
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Updated 5 years ago
- Contains Logstash related content including tons of Logstash configurations☆254Updated 4 years ago
- ☆222Updated last year
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- ☆13Updated this week
- ☆24Updated 5 years ago