jasonish / suricatax-rule-parser-rs
☆10Updated 9 months ago
Alternatives and similar repositories for suricatax-rule-parser-rs:
Users that are interested in suricatax-rule-parser-rs are comparing it to the libraries listed below
- Suricata rule and intel index☆30Updated 2 months ago
- Go implementation of the Community ID flow hashing standard☆20Updated last month
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- Simple streaming pre-processor and enrichment tool for structured logs.☆12Updated last year
- suricata eve.json parser in Go☆14Updated 5 years ago
- ☆12Updated 3 months ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆68Updated 9 months ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Updated 2 years ago
- ☆10Updated 9 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆100Updated 3 years ago
- Suricata Verification Tests - Testing Suricata Output☆104Updated this week
- DHCP Fingerprinting☆28Updated 4 years ago
- ☆35Updated last year
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆14Updated 3 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Zeek scripts that provide an alternative log file logging TLS/SSL traffic☆10Updated 3 years ago
- Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation☆72Updated 2 months ago
- A tools to work on suricata stats.log file.☆28Updated 9 years ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 5 years ago
- ☆39Updated 2 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 8 years ago
- A GUI/REST interface to find similarities in large sets (think: binaries). Based on ssdeep.☆19Updated 2 years ago
- A proof of concept implementation of the Siemens S7 protocol analyser for the Bro IDS.☆16Updated 7 years ago
- Wireshark plugin to display Suricata analysis info☆93Updated 3 years ago
- ☆33Updated 4 years ago
- ☆97Updated 4 years ago
- Threat Detection Rules (Snort/Sigma/Yara)☆13Updated last year
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- How to Zeek Sysmon Logs!☆102Updated 3 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆39Updated last year