cameling / logminerLinks
Mine patterns from logs
☆27Updated 9 years ago
Alternatives and similar repositories for logminer
Users that are interested in logminer are comparing it to the libraries listed below
Sorting:
- Simple parser for Splunk Processing Language (SPL) written in Python.☆35Updated 7 years ago
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 8 years ago
- Query.AI plugin for Kibana☆13Updated 6 years ago
- Open-source framework to detect outliers in Elasticsearch events☆208Updated 2 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 9 years ago
- Apache Metron☆60Updated 5 years ago
- Convert Splunk SPL to Elasticsearch DSL with pegjs☆13Updated 3 years ago
- Elastic Search Processing Language☆50Updated 9 years ago
- User interface for OpenSOC☆100Updated 10 years ago
- Bro analyzer that detects Google's QUIC protocol☆10Updated 4 years ago
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 5 years ago
- Extensible set of Storm topologies and topology attributes for streaming, enriching, indexing, and storing telemetry in Hadoop.☆134Updated 2 years ago
- Elasticsearch querying library☆20Updated 6 years ago
- ☆42Updated 3 years ago
- Rule sets for Sagan☆106Updated 5 years ago
- Security information and event management, masters's diploma☆10Updated 10 years ago
- Add POST body excerpt to Bro's HTTP log☆14Updated 2 months ago
- ☆228Updated 2 months ago
- A framework for the real-time network traffic analysis based on world-leading technologies for distributed stream processing, network tra…☆102Updated 4 years ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆31Updated 5 years ago
- ES索引的维护脚本, 每天close delete reallocate optimize索引☆23Updated 6 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 3 years ago
- An example for implementation of ssdeep similarity search optimized with elasticsearch☆34Updated 8 years ago
- Apache Metron Workshop Lab materials and instructions.☆35Updated 6 years ago
- Advanced Persistent Threat Detection Using Network Analysis☆23Updated 6 years ago
- Anomaly detection and monitoring software☆19Updated 7 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Updated 5 years ago
- brostash: Linux distribution based on Debian and focusing on network security events collection☆33Updated 5 years ago
- Threat Mapping Catalogue☆18Updated 4 years ago
- An anomaly-based intrusion detection system.☆85Updated 3 years ago