cleesmith / unifiedbeatLinks
Unifiedbeat reads records from Unified2 binary files generated by network intrusion detection software and indexes the records in Elasticsearch.
☆30Updated 8 years ago
Alternatives and similar repositories for unifiedbeat
Users that are interested in unifiedbeat are comparing it to the libraries listed below
Sorting:
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated last year
- PassiveDNS in Go☆125Updated 5 years ago
- Dockerfiles for NSM tools☆84Updated 8 years ago
- User interface for OpenSOC☆100Updated 9 years ago
- Packetpig - Open Source Big Data Security Analytics☆298Updated 7 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated 2 months ago
- Simple install script for Suricata/Zeek with JSON logging on FreeBSD☆18Updated 3 months ago
- Bro-IDS scripts☆50Updated 8 years ago
- A RESTful API frontend for Stenographer☆54Updated 2 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 7 years ago
- Bro IDS programs collection.☆145Updated 5 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆34Updated 2 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- OpenFPC, Open Source Full Packet Capture☆72Updated 6 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- A daemon that subscribes to packet capture requests via pubsub and posts the data to a configurable destination☆32Updated 7 years ago
- A Go(lang) Library for Handling Snort and Suricata unified2 Log Files☆17Updated 3 years ago
- Extensible set of Storm topologies and topology attributes for streaming, enriching, indexing, and storing telemetry in Hadoop.☆132Updated last year
- Docker based Suricata, Elasticsearch, Logstash, Kibana, Scirius aka SELKS☆183Updated 2 years ago
- Isolated, Scalable, & Lightweight Environment for Training☆111Updated 6 years ago
- Engine of MineMeld☆141Updated 2 years ago
- A lightweight tool to score network traffic and flag anomalies☆123Updated 11 months ago
- ** README ** This repo has MOVED to https://github.com/quadrantsec/sagan☆228Updated 4 years ago
- Bro Snippets☆21Updated 10 years ago
- INACTIVE - http://mzl.la/ghe-archive - Linux Audit Plugin for heka written using netlink Protocol in golang and Lua☆74Updated 6 years ago
- Misc. Bro scripts☆64Updated 8 years ago
- Suricata Extreme Performance Tuning guide☆210Updated 7 years ago
- Docker container for MISP☆96Updated 7 years ago
- DEPRECATED - USE v3 (bearded-avenger)☆228Updated 7 years ago