carolynduby / ApacheMetronWorkshop
Apache Metron Workshop Lab materials and instructions.
☆35Updated 5 years ago
Alternatives and similar repositories for ApacheMetronWorkshop:
Users that are interested in ApacheMetronWorkshop are comparing it to the libraries listed below
- Apache Metron☆59Updated 4 years ago
- Open-source framework to detect outliers in Elasticsearch events☆208Updated last year
- Mapping NSM rules to MITRE ATT&CK☆69Updated 4 years ago
- YETI is a TAXII implementation☆46Updated 5 years ago
- Logstash Input plugin by Blueliv☆27Updated last year
- Threat Alert Logic Repository☆92Updated 6 years ago
- SIAC is an enterprise SIEM built on open-source technology.☆114Updated 6 years ago
- How to Zeek Sysmon Logs!☆102Updated 3 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- A website and framework for testing NIDS detection☆57Updated 3 years ago
- Security Onion Elastic Stack☆46Updated 4 years ago
- The PCAP Analyzer for Splunk includes useful Dashboards to analyze network packet capture files from Wireshark or Network Monitor (.pcap)…☆42Updated last year
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- User interface for OpenSOC☆100Updated 9 years ago
- ☆76Updated 2 years ago
- Dashboards and loader for ROCK NSM dashboards☆48Updated last year
- Web service for scanning pcaps with snort☆108Updated 6 years ago
- A tool to assess data quality, built on top of the awesome OSSEM.☆76Updated 2 years ago
- QRadio ~ Best Threat Intelligence Radio ~ Tune In!☆96Updated 8 years ago
- ☆15Updated 7 years ago
- Zeek IDS Dockerfile☆100Updated 2 years ago
- Contributed Bro Scripts☆30Updated 10 years ago
- brostash: Linux distribution based on Debian and focusing on network security events collection☆34Updated 4 years ago
- Misc. Bro scripts☆63Updated 7 years ago
- A RESTful API frontend for Stenographer☆55Updated 2 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆100Updated 3 years ago
- A Python library for handling TAXII Messages invoking TAXII Services.☆70Updated 3 years ago
- Tool for managing Zeek deployments.☆54Updated last month
- Community driven repository of Playbooks and Apps for ThreatConnect.☆68Updated 2 weeks ago
- A repository for OSSEC rules and decoders☆53Updated last year