eraclitux / machine-learning-netflow
Ipython notebook that illustrates effectiveness of machine learning algorithms in anomaly detection of netflow data (inbound/outbound DDoS, etc...)
☆78Updated 7 years ago
Related projects ⓘ
Alternatives and complementary repositories for machine-learning-netflow
- Classifier to separate legitimate domains from those generated by a domain generating algorithm (DGA).☆42Updated 8 years ago
- Packetpig - Open Source Big Data Security Analytics☆298Updated 6 years ago
- An open source pcap packet and NetFlow file analysis tool using Hadoop MapReduce and Hive.☆43Updated 11 years ago
- User interface for OpenSOC☆100Updated 9 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated 10 months ago
- A framework for the real-time network traffic analysis based on world-leading technologies for distributed stream processing, network tra…☆100Updated 3 years ago
- Hogzilla is an Intrusion Detection System (IDS) supported by Snort, Apache Spark, HBase and libnDPI, which provides Network Anomaly Detec…☆28Updated 6 years ago
- System for network traffic analysis and anomaly detection.☆86Updated 2 weeks ago
- Bro IDS Dockerfile☆129Updated 5 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Apache Metron☆59Updated 4 years ago
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 7 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 6 months ago
- Extensible set of Storm topologies and topology attributes for streaming, enriching, indexing, and storing telemetry in Hadoop.☆131Updated 10 months ago
- OpenFPC, Open Source Full Packet Capture☆71Updated 5 years ago
- From pcap to Gephi☆29Updated 7 years ago
- No elephant flows - flow shunting for Arista switches using EOS API☆27Updated 3 years ago
- A series of labs that will help users apply various data science techniques to security related data.☆130Updated 9 years ago
- POC IDS anomaly detection engine built with iPython notebook, matplotlib, pandas, numpy, scikit-learn, d3.js, hyperloglog implementation,…☆78Updated 10 years ago
- Passive Real-time Asset Detection System☆231Updated 5 months ago
- Vagrantfile and scripts for building a disposable OpenSOC Cluster☆29Updated 8 years ago
- Rule sets for Sagan☆102Updated 3 years ago
- Suricata Extreme Performance Tuning guide - Mark II☆113Updated 6 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- Detecting DGA bots in a single network using DNS traffic☆26Updated 6 years ago
- Machine learning plugins for network traffic☆121Updated last year
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆164Updated last year