A Zeek package that detects Zoom logins and meeting joins
☆12Apr 15, 2020Updated 5 years ago
Alternatives and similar repositories for got_zoom
Users that are interested in got_zoom are comparing it to the libraries listed below
Sorting:
- Zeek package to detect Zerologon☆11Nov 10, 2021Updated 4 years ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Oct 15, 2020Updated 5 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Jun 20, 2023Updated 2 years ago
- A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.☆33Jun 29, 2022Updated 3 years ago
- line based tcp load balancing proxy.☆14Jun 18, 2024Updated last year
- Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, S…☆16Jun 15, 2021Updated 4 years ago
- Corelight Sensor API command-line client☆17Jan 9, 2026Updated 2 months ago
- Zeek package for detecting the Eternal* exploits and a set of SMBv1 protocol violations.☆19Aug 21, 2025Updated 7 months ago
- ☆58Mar 4, 2022Updated 4 years ago
- ☆12Aug 13, 2018Updated 7 years ago
- Extensions for Zeek's Intelligence Framework.☆11Mar 1, 2022Updated 4 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 5 years ago
- WiP - cve-search next gen☆13Jan 18, 2020Updated 6 years ago
- No elephant flows - flow shunting for Arista switches using EOS API☆27Apr 27, 2021Updated 4 years ago
- OpenDXL Broker is an open source version of a Data Exchange Layer (DXL) broker☆14Feb 11, 2024Updated 2 years ago
- Add POST body excerpt to Bro's HTTP log☆14Dec 10, 2025Updated 3 months ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Jul 12, 2021Updated 4 years ago
- Ansible playbooks to build an OpenBSD LDAP server☆10Jun 16, 2018Updated 7 years ago
- ☆13Apr 8, 2022Updated 3 years ago
- The Multiplatform Linux Sandbox☆16Dec 19, 2023Updated 2 years ago
- ☆11Sep 9, 2020Updated 5 years ago
- A geolocation button for streamlit☆19Nov 18, 2023Updated 2 years ago
- An Extended, Modulair, Host Discovery Framework☆42Jan 22, 2019Updated 7 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆39Aug 18, 2022Updated 3 years ago
- Integration between MISP platform and McAfee MVISION EDR☆14Mar 14, 2022Updated 4 years ago
- NSE script to automatically discover SD-WAN nodes☆23Sep 4, 2019Updated 6 years ago
- Import specific data sources into the Sigma generic and open signature format.☆79May 6, 2022Updated 3 years ago
- A collection of helpful resources related to Cybersecurity and a lot more.☆25Feb 22, 2026Updated 3 weeks ago
- OASIS Cyber Threat Intelligence (CTI) TC: A tool for generating STIX content for prototyping and testing. https://github.com/oasis-open/c…☆43Apr 15, 2024Updated last year
- A CLI tool for managing Chronicle user workflows☆18Sep 24, 2025Updated 5 months ago
- An unofficial Python library and client for the Metabase API.☆11Dec 21, 2022Updated 3 years ago
- Simple python+flask API demo and d3/c3 data visualization☆15May 31, 2015Updated 10 years ago
- My raspberry pi controlled aquarium☆12Apr 11, 2016Updated 9 years ago
- MineMeld nodes for MISP☆19Jan 23, 2024Updated 2 years ago
- A modern and powerful launcher for Minecraft.☆16Jan 2, 2026Updated 2 months ago
- Extracting and analyzing URLs from Emails for phishing events☆21Oct 22, 2020Updated 5 years ago
- This repository hosts community contributed Kestrel analytics☆18May 28, 2024Updated last year
- zeek-scripts☆44Dec 27, 2018Updated 7 years ago
- A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.☆14Jul 18, 2018Updated 7 years ago