cleesmith / unifiedbeatLinks
Unifiedbeat reads records from Unified2 binary files generated by network intrusion detection software and indexes the records in Elasticsearch.
☆30Updated 9 years ago
Alternatives and similar repositories for unifiedbeat
Users that are interested in unifiedbeat are comparing it to the libraries listed below
Sorting:
- (OBSOLETE) Plugins for Bro☆53Updated 8 years ago
- User interface for OpenSOC☆100Updated 10 years ago
- PassiveDNS in Go☆125Updated 6 years ago
- Dockerfiles for NSM tools☆84Updated 8 years ago
- Packetpig - Open Source Big Data Security Analytics☆298Updated 7 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 7 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated last year
- OpenFPC, Open Source Full Packet Capture☆71Updated 6 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated 6 months ago
- Extensible set of Storm topologies and topology attributes for streaming, enriching, indexing, and storing telemetry in Hadoop.☆134Updated last year
- Misc. Bro scripts☆64Updated 8 years ago
- Bro IDS programs collection.☆146Updated 6 years ago
- Docker based Suricata, Elasticsearch, Logstash, Kibana, Scirius aka SELKS☆184Updated 3 years ago
- Bro Snippets☆21Updated 11 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- A Go(lang) Library for Handling Snort and Suricata unified2 Log Files☆17Updated 4 years ago
- ** README ** This repo has MOVED to https://github.com/quadrantsec/sagan☆229Updated 4 years ago
- A daemon that subscribes to packet capture requests via pubsub and posts the data to a configurable destination☆32Updated 8 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 8 years ago
- Rule sets for Sagan☆105Updated 4 years ago
- A search command for Splunk which will allow you to search Elastic Search and display the results in the Splunk GUI☆69Updated 3 months ago
- A Distributed, Search-Optimized Full Packet Capture System☆243Updated 2 years ago
- Bro-IDS scripts☆50Updated 9 years ago
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 10 years ago
- Bro/Zeek integration with osquery☆94Updated 5 years ago
- A program that uses xapian to index the flat file databases used by nfdump or flow-tools☆36Updated 7 years ago
- IP geolocation for authentication events with MozDef☆10Updated 6 years ago
- ☆72Updated 3 years ago
- Web service for scanning pcaps with snort☆110Updated 7 years ago
- INACTIVE - http://mzl.la/ghe-archive - Linux Audit Plugin for heka written using netlink Protocol in golang and Lua☆74Updated 6 years ago