jsiwek / bro_vettingLinks
Bro scripts to monitor for new hosts within a subnet range that aren't whitelisted/vetted.
☆13Updated 12 years ago
Alternatives and similar repositories for bro_vetting
Users that are interested in bro_vetting are comparing it to the libraries listed below
Sorting:
- Packet capture sanitizer/anonymizer.☆25Updated 2 years ago
- Zeek package for detecting the Eternal* exploits and a set of SMBv1 protocol violations.☆19Updated 3 months ago
- Corelight Sensor API command-line client☆17Updated 3 months ago
- An OpenTAXII Configuration for MISP☆87Updated 3 years ago
- Analysis scripts for the Bro Intrusion Detection System☆58Updated 11 years ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Updated 6 years ago
- Bro IDS Dockerfile☆129Updated 6 years ago
- ☆17Updated 5 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 10 years ago
- Enrich a host with open source security information☆27Updated 10 years ago
- A collection of Bro scripts I've written☆41Updated 10 years ago
- A package manager for Zeek☆47Updated 2 months ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 6 years ago
- Misc. Bro scripts☆64Updated 8 years ago
- Snort Rules☆19Updated 9 years ago
- Transforms for the AlienVault OTX service☆39Updated 9 years ago
- The default package source of the Zeek Package Manager. Wrote a package? See the README for how to get it included.☆143Updated last week
- Code for try.zeek.org.☆18Updated this week
- Isolated, Scalable, & Lightweight Environment for Training☆111Updated 6 years ago
- Bro stuff.☆12Updated 9 years ago
- A framework for receiving and redistributing abuse feeds☆125Updated 6 years ago
- Bro things..☆15Updated 10 years ago
- Harbinger Threat Intelligence☆83Updated 10 years ago
- Various Bro scripts☆37Updated 11 years ago
- This repo contains all of my OS hardening scripts☆69Updated 8 years ago
- Dashboards and loader for ROCK NSM dashboards☆49Updated 2 years ago
- Detect cryptocurrency mining traffic with Zeek.☆46Updated 4 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆50Updated 11 years ago
- Imports Alienvault OTX pulses to a MISP instance☆53Updated 4 years ago
- Bringing DevOps to Forensics☆34Updated 10 years ago