cleesmith / unifiedbeat
Unifiedbeat reads records from Unified2 binary files generated by network intrusion detection software and indexes the records in Elasticsearch.
☆30Updated 8 years ago
Alternatives and similar repositories for unifiedbeat:
Users that are interested in unifiedbeat are comparing it to the libraries listed below
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 10 months ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- ☆71Updated 3 years ago
- Dockerfiles for NSM tools☆84Updated 7 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- Bro-IDS scripts☆50Updated 8 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated last year
- Bro Snippets☆21Updated 10 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 7 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- PassiveDNS in Go☆125Updated 5 years ago
- OpenFPC, Open Source Full Packet Capture☆71Updated 6 years ago
- A Go(lang) Library for Handling Snort and Suricata unified2 Log Files☆17Updated 3 years ago
- Rule sets for Sagan☆102Updated 4 years ago
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 10 years ago
- No elephant flows - flow shunting for Arista switches using EOS API☆27Updated 3 years ago
- Bro scripts written by CrowdStrike Services☆146Updated 3 years ago
- SPL to lucene translator☆15Updated 10 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Meeting notes☆15Updated 8 years ago
- ☆75Updated 3 years ago
- Feed for verious malicious IPs such as malware and botnets☆12Updated 8 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- Packetpig - Open Source Big Data Security Analytics☆299Updated 6 years ago
- Bro IDS programs collection.☆146Updated 5 years ago
- User interface for OpenSOC☆100Updated 9 years ago
- Analysis scripts for the Bro Intrusion Detection System☆59Updated 11 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 10 years ago
- module for osquery to load Bro logs into tables☆28Updated 9 years ago