brimdata / brimcapLinks
Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)
☆92Updated 8 months ago
Alternatives and similar repositories for brimcap
Users that are interested in brimcap are comparing it to the libraries listed below
Sorting:
- Open source endpoint agent providing host information to Zeek. [v2]☆90Updated last month
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆161Updated 9 months ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆84Updated 3 weeks ago
- Suricata rules for network anomaly detection☆180Updated last month
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆167Updated last year
- Suricata Verification Tests - Testing Suricata Output☆118Updated last week
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆67Updated last year
- simple YARA-based IOC scanner☆174Updated this week
- ☆45Updated 3 years ago
- Cisco Orbital - Osquery queries by Talos☆136Updated last year
- Sagan is a multi-threads, high performance log analysis engine. At it's core, Sagan similar to Suricata/Snort but with logs rather th…☆190Updated 3 months ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆38Updated 3 years ago
- YaraScanner is a file pattern-matching tool based on YARA rules.☆60Updated 2 years ago
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆141Updated 11 months ago
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆127Updated 9 months ago
- ☆34Updated last week
- Arya is a unique tool that produces pseudo-malicious files meant to trigger YARA rules. You can think of it like a reverse YARA.☆259Updated 3 years ago
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆29Updated 2 years ago
- The Security Analyst’s Guide to Suricata☆61Updated 8 months ago
- IOCs published by Black Lotus Labs☆124Updated 2 months ago
- Anything Sysmon related from the MSTIC R&D team☆155Updated last year
- A MITRE Caldera plugin☆49Updated 3 months ago
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆43Updated 7 months ago
- ☆33Updated 2 months ago
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆77Updated last week
- ☆54Updated 2 years ago
- yara detection rules for hunting with the threathunting-keywords project☆157Updated 8 months ago
- Red Canary's eBPF Sensor☆112Updated 7 months ago
- ☆61Updated this week
- ☆67Updated 7 years ago