eraclitux / machine-learning-netflow
Ipython notebook that illustrates effectiveness of machine learning algorithms in anomaly detection of netflow data (inbound/outbound DDoS, etc...)
☆78Updated 7 years ago
Alternatives and similar repositories for machine-learning-netflow:
Users that are interested in machine-learning-netflow are comparing it to the libraries listed below
- Packetpig - Open Source Big Data Security Analytics☆298Updated 6 years ago
- An open source pcap packet and NetFlow file analysis tool using Hadoop MapReduce and Hive.☆43Updated 11 years ago
- User interface for OpenSOC☆100Updated 9 years ago
- No elephant flows - flow shunting for Arista switches using EOS API☆27Updated 3 years ago
- Extensible set of Storm topologies and topology attributes for streaming, enriching, indexing, and storing telemetry in Hadoop.☆132Updated last year
- Classifier to separate legitimate domains from those generated by a domain generating algorithm (DGA).☆41Updated 8 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Updated this week
- Hogzilla is an Intrusion Detection System (IDS) supported by Snort, Apache Spark, HBase and libnDPI, which provides Network Anomaly Detec…☆28Updated 7 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 11 months ago
- System for network traffic analysis and anomaly detection.☆89Updated 5 months ago
- POC IDS anomaly detection engine built with iPython notebook, matplotlib, pandas, numpy, scikit-learn, d3.js, hyperloglog implementation,…☆79Updated 10 years ago
- From pcap to Gephi☆30Updated 7 years ago
- Bro IDS Dockerfile☆129Updated 5 years ago
- Passive Real-time Asset Detection System☆237Updated 10 months ago
- DDOS Detection and Mitigation Appliance☆67Updated 8 years ago
- Lightweight DNS telemetry☆54Updated 3 years ago
- Network Analysis using ElasticSearch and Kibana☆45Updated 8 years ago
- A framework for the real-time network traffic analysis based on world-leading technologies for distributed stream processing, network tra…☆102Updated 3 years ago
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 7 years ago
- Rule sets for Sagan☆103Updated 4 years ago
- Misc. Bro scripts☆63Updated 7 years ago
- A series of labs that will help users apply various data science techniques to security related data.☆132Updated 9 years ago
- Unifiedbeat reads records from Unified2 binary files generated by network intrusion detection software and indexes the records in Elastic…☆30Updated 8 years ago
- OpenFPC, Open Source Full Packet Capture☆72Updated 6 years ago
- calculate flow information from PCAP and extract tcp streams☆69Updated 9 months ago
- Docker files for building Zeek.☆86Updated last year
- Documentation on how to set up and use PNDA☆42Updated 6 years ago
- ☆17Updated 5 years ago
- DGA Domains detection☆66Updated 7 years ago