danielguerra69 / docker-moloch
A Docker container for Moloch based on minimal Debian
☆13Updated 7 years ago
Alternatives and similar repositories for docker-moloch:
Users that are interested in docker-moloch are comparing it to the libraries listed below
- Scripts for Bro IDS and ELK Stack☆56Updated 9 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Security Onion Elastic Stack☆46Updated 4 years ago
- A Docker container for Moloch based on minimal Debian☆26Updated 9 years ago
- An informational repo about hunting for adversaries in your IT environment.☆14Updated 8 years ago
- Top DNS Measurement for Bro☆11Updated 4 years ago
- brocon-15 scripts☆13Updated 8 years ago
- Exports MISP events to STIX and ingest into McAfee ESM☆15Updated 5 years ago
- ☆22Updated 7 years ago
- Bro Intel Feed Linter☆26Updated 5 years ago
- Automatic firewall rule orchestator.☆83Updated 7 years ago
- A python script to query the MITRE ATT&CK API for tactics, techniques, mitigations, & detection methods for specific threat groups.☆66Updated 6 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- Modern Honey Network App for Splunk☆50Updated 5 years ago
- Mitre chopshop network decoder framework☆30Updated 8 years ago
- bro on debian with elasticsearch support☆24Updated 8 years ago
- Utilities and scripts for bro-ids☆22Updated 11 years ago
- Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...☆72Updated 6 years ago
- BTG's purpose is to make fast and efficient search on IOC☆70Updated 6 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 9 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.☆22Updated 7 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 7 years ago
- Harbinger Threat Intelligence☆83Updated 9 years ago
- Modified edition of cuckoo☆18Updated 7 years ago
- Cyber Intel Management☆48Updated 7 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 8 years ago
- Bro scripts to be shared with the community☆109Updated 12 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago