felixe / idsEventGenerator
aka GENESIDS: Reads and parses rules using a "snort like" syntax and generates and sends packets that trigger events in signature based IDS (Intrusion Detection Systems) using these rules
☆22Updated 6 years ago
Alternatives and similar repositories for idsEventGenerator
Users that are interested in idsEventGenerator are comparing it to the libraries listed below
Sorting:
- Wireshark plugin to display Suricata analysis info☆94Updated 3 years ago
- The stratosphere testing framework is mean to help in the researching and verification of the behavioral models used by the Stratoshpere …☆50Updated 7 years ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- A website and framework for testing NIDS detection☆57Updated 3 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Plugin for Zeek/Bro which provides http2 decoder/analyzer☆31Updated 11 months ago
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- Zeek support for Community ID flow hashing.☆35Updated last year
- Zeek plugin to generate data on per-packet sizes and intervals☆14Updated 5 years ago
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆66Updated last year
- PROJECT DELTA: SDN SECURITY EVALUATION FRAMEWORK☆86Updated 2 years ago
- A web-based tool to assist the work of the intuitive threat analysts.☆113Updated 6 years ago
- Detect cryptocurrency mining traffic with Zeek.☆46Updated 4 years ago
- Cyber Threat Intelligence Feeds☆95Updated 8 years ago
- scan-detection policies for bro☆16Updated 3 months ago
- A completely automated anomaly detector Zeek network flows files (conn.log).☆77Updated 9 months ago
- malware-traffic-analysis.net PCAPs repository.☆35Updated 8 years ago
- Passive DNS V2☆60Updated 11 years ago
- Evading Snort Intrusion Detection System.☆77Updated 3 years ago
- Plugin providing AF_XDP support for Bro.☆14Updated 4 years ago
- A collection of resources for security data☆41Updated 7 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆123Updated 3 years ago
- Python tool for converting from joy format to JA3 format SSL/TLS hashes☆11Updated 4 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- NTP logger/honeypot☆53Updated 11 years ago
- Expandable Defensive Cyber Operations Platform☆43Updated 2 years ago
- Aggregates security threats from a number of online sources, and outputs to Syslog CEF, Snort Signatures, Iptables rules, hosts.deny, etc…☆79Updated 9 years ago
- Potiron - Normalize, Index and Visualize Network Capture☆85Updated 6 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago