berthayes / cp-zeekLinks
Analyze Zeek IDS data with ksqlDB running on Confluent Platform via Docker on your laptop. Or spin up an arbitrary number of AWS hosts, each running Confluent Platform and ksqlDB for use in an instructor-led workshop.
☆11Updated 3 years ago
Alternatives and similar repositories for cp-zeek
Users that are interested in cp-zeek are comparing it to the libraries listed below
Sorting:
- ☆19Updated 3 years ago
- Kafka connector for Splunk☆93Updated 10 months ago
- Geospatial UDFs for KSQL☆22Updated 3 years ago
- A Workflow for Data Scientists to bring Jupyter Notebook Visualizations to Kibana Dashboards☆45Updated 2 years ago
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 3 years ago
- SIEM Logstash parsing for more than hundred technologies☆185Updated this week
- ☆38Updated 5 years ago
- A pivot table plugin for Kibana 5☆24Updated 6 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆34Updated 2 years ago
- A Python library to help with some common threat hunting data analysis operations☆143Updated 2 years ago
- Dashboards and loader for ROCK NSM dashboards☆49Updated 2 years ago
- ☆15Updated 7 years ago
- A search command for Splunk which will allow you to search Elastic Search and display the results in the Splunk GUI☆69Updated 8 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 3 weeks ago
- Sankey diagram for Kibana visualize.☆31Updated 7 months ago
- A machine learning plugin in Open Distro for real time anomaly detection on streaming data.☆81Updated 2 years ago
- Contains Logstash related content including tons of Logstash configurations☆254Updated 3 years ago
- Open-source framework to detect outliers in Elasticsearch events☆209Updated 2 years ago
- Kibana Milestones Visualization☆90Updated last year
- Zeek support for Community ID flow hashing.☆36Updated 2 years ago
- Data Governance app for Splunk☆12Updated last year
- Country flag FieldFormat Plugin for Kibana 7☆18Updated 4 years ago
- OSSEM Common Data Model☆56Updated 2 years ago
- Security Analytics enables users for detecting security threats on their security event log data. It will also allow them to modify/tailo…☆86Updated 2 weeks ago
- Documentation of Cortex☆174Updated last year
- ☆221Updated last year
- Easy way to get structured stuff into Elasticsearch (CSV, MSSQL, API)☆88Updated 5 years ago
- Kafka Connect connector for receiving data and writing data to Splunk.☆25Updated 7 years ago
- Data validator agains Splunk Common Information Model (CIM)☆76Updated last year
- A Python library for handling TAXII Messages invoking TAXII Services.☆71Updated 4 years ago