Bro PCAP Processing and Tagging API
☆28Nov 9, 2017Updated 8 years ago
Alternatives and similar repositories for brocapi
Users that are interested in brocapi are comparing it to the libraries listed below
Sorting:
- Pcaps for PeddleCheap and implant communication + script for interpreting and decrypting pcaps.☆17Nov 29, 2017Updated 8 years ago
- PacketSled's Bro AMQP Writer Plugin☆11Aug 5, 2016Updated 9 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Nov 29, 2017Updated 8 years ago
- Bro analyzer that detects Google's QUIC protocol☆10Mar 2, 2021Updated 5 years ago
- extract and parse WEVT_TEMPLATEs from PE files☆18Dec 30, 2023Updated 2 years ago
- Bro/Zeek integration with osquery☆93Nov 2, 2020Updated 5 years ago
- ☆18Jun 8, 2018Updated 7 years ago
- A parser/timeline creator for auditd logs.☆16Aug 5, 2014Updated 11 years ago
- Script for generating Bro intel files from pdf or html reports☆77Dec 7, 2015Updated 10 years ago
- A framework that correlates Bro events☆18Oct 25, 2013Updated 12 years ago
- ☆13Oct 7, 2019Updated 6 years ago
- Simple IP enrichment service and API wrapping PyASN and MaxMind GeoIP.☆71Dec 8, 2022Updated 3 years ago
- Bro Intel Feed Linter☆26Aug 30, 2019Updated 6 years ago
- Ready to run scripts for network analysis☆91Mar 20, 2025Updated last year
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 5 years ago
- Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark☆451Updated this week
- ☆25Aug 14, 2015Updated 10 years ago
- Zeek network security monitor plugin that enables parsing of the Profinet protocol☆31May 30, 2024Updated last year
- Bro scripts written by CrowdStrike Services☆150May 3, 2021Updated 4 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Jul 23, 2015Updated 10 years ago
- This repository has been archived in favor of https://github.com/idaholab/Malcolm-Test-Artifacts☆38Dec 11, 2024Updated last year
- Custom scripts released for BSidesDC 2016☆14Oct 19, 2016Updated 9 years ago
- Python emulator for Excel XLM macros.☆18May 25, 2020Updated 5 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44May 9, 2024Updated last year
- ☆14Jan 14, 2026Updated 2 months ago
- Meeting notes☆14Apr 5, 2016Updated 9 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Feb 20, 2017Updated 9 years ago
- Security Onion Elastic Stack☆46Feb 1, 2021Updated 5 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Jul 13, 2018Updated 7 years ago
- The mission of Black Lotus Labs is to leverage our network visibility to both help protect customers and keep the internet clean.☆12Jun 18, 2021Updated 4 years ago
- How to Zeek Sysmon Logs!☆103Feb 12, 2022Updated 4 years ago
- IEC104 Client for Metasploit☆11Aug 6, 2018Updated 7 years ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆80Sep 13, 2023Updated 2 years ago
- Dockerfiles for NSM tools☆84Apr 14, 2017Updated 8 years ago
- ☆15Aug 8, 2017Updated 8 years ago
- ☆24Aug 30, 2019Updated 6 years ago
- Python Forensic and Log Analysis GUI☆27Dec 22, 2014Updated 11 years ago
- 가장 빨리 만나는 Go 언어: 문법, 라이브러리, 프로젝트로 배우는 Go 언어!☆10Sep 3, 2016Updated 9 years ago
- Mac osx forensics tools☆12Nov 28, 2020Updated 5 years ago