jasonish / docker-suricata
A Suricata Docker image.
☆269Updated 2 months ago
Alternatives and similar repositories for docker-suricata:
Users that are interested in docker-suricata are comparing it to the libraries listed below
- Suricata IDS/IPS log analytics using the Elastic Stack.☆238Updated 3 years ago
- The tool for updating your Suricata rules.☆265Updated 2 months ago
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆379Updated this week
- Scirius is a web application for Suricata ruleset management and threat hunting.☆642Updated 2 months ago
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆443Updated last week
- Zeek IDS Dockerfile☆100Updated 2 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆170Updated last year
- MISP Docker (XME edition)☆283Updated last year
- Suricata Extreme Performance Tuning guide - Mark II☆115Updated 6 years ago
- Docker files for building Zeek.☆86Updated last year
- Suricata Extreme Performance Tuning guide☆207Updated 6 years ago
- A Suricata based IDS/IPS/NSM distro☆1,507Updated 6 months ago
- idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)☆281Updated last year
- Suricata, Snort and Zeek IDS rule and pcap testing system☆470Updated last month
- OpenCTI Docker deployment helpers☆174Updated this week
- A Zeek log writer plugin that publishes to Kafka.☆46Updated last month
- Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark☆433Updated last year
- Suricata rules for network anomaly detection☆155Updated this week
- Passive Real-time Asset Detection System☆233Updated 8 months ago
- This project is a SIEM with SIRP and Threat Intel, all in one.☆424Updated 3 months ago
- Security event correlation engine for ELK stack☆435Updated 7 months ago
- A (nearly) production ready Dockered MISP☆231Updated last year
- A website and framework for testing NIDS detection☆244Updated 4 months ago
- Wazuh - Docker containers☆767Updated this week
- Suricata Verification Tests - Testing Suricata Output☆104Updated this week
- Documentation of Cortex☆172Updated last year
- Open source endpoint agent providing host information to Zeek. [v2]☆75Updated 4 months ago
- Fast and efficient osquery management☆413Updated this week
- Cortex Analyzers Repository☆446Updated last week
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆88Updated 2 years ago