brimdata / brimcapLinks
Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)
☆82Updated 2 months ago
Alternatives and similar repositories for brimcap
Users that are interested in brimcap are comparing it to the libraries listed below
Sorting:
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆155Updated 3 months ago
- Open source endpoint agent providing host information to Zeek. [v2]☆83Updated this week
- Suricata rules for network anomaly detection☆164Updated 2 months ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆74Updated 3 weeks ago
- Suricata Verification Tests - Testing Suricata Output☆110Updated this week
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- simple YARA-based IOC scanner☆169Updated this week
- ☆43Updated 2 years ago
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆26Updated last year
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆141Updated 4 months ago
- Cisco Orbital - Osquery queries by Talos☆134Updated 10 months ago
- Zeek IDS Dockerfile☆101Updated 2 years ago
- IoT and Operational Technology Honeypot☆103Updated last year
- Look into EDR events from network☆23Updated 2 months ago
- ☆55Updated this week
- The Security Analyst’s Guide to Suricata☆56Updated 2 months ago
- A MITRE Caldera plugin☆43Updated 7 months ago
- Incident Response - Fast suspicious file finder☆242Updated 3 years ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- Sagan is a multi-threads, high performance log analysis engine. At it's core, Sagan similar to Suricata/Snort but with logs rather th…☆178Updated 3 months ago
- DGA Detective - Hunt domains generated by Domain Generation Algorithms to identify malware traffic☆42Updated 11 months ago
- zeek-scripts☆44Updated 6 years ago
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆73Updated last year
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆126Updated 3 months ago
- OASIS Cyber Threat Intelligence (CTI) TC: A repository for commonly used STIX objects in order to avoid needless duplication. https://gi…☆93Updated last month
- Pure python parser for Snort/Suricata rules.☆33Updated last year
- YaraScanner is a file pattern-matching tool based on YARA rules.☆57Updated 2 years ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆65Updated last year
- Anything Sysmon related from the MSTIC R&D team☆153Updated last year
- Suricata rule and intel index☆31Updated this week