mammo0 / docker-arkimeLinks
A Docker container for Arkime based on Ubuntu
☆33Updated last week
Alternatives and similar repositories for docker-arkime
Users that are interested in docker-arkime are comparing it to the libraries listed below
Sorting:
- Zeek IDS Dockerfile☆101Updated 2 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆154Updated 3 months ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆106Updated last year
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆110Updated last year
- Docker files for building Zeek.☆86Updated last year
- Suricata rules for network anomaly detection☆164Updated 2 months ago
- Fast IOC and YARA Scanner☆80Updated 5 years ago
- ☆51Updated 3 years ago
- Mapping NSM rules to MITRE ATT&CK☆71Updated 4 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆109Updated 7 years ago
- Snorpy is a python script the gives a Gui interface to help those new to snort create rules.☆61Updated 10 months ago
- Run Velociraptor on Security Onion☆38Updated 2 years ago
- The FASTEST way to consume threat intel.☆68Updated 2 years ago
- ☆35Updated 4 years ago
- Convert Sigma rules to Wazuh rules☆67Updated last year
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆94Updated 3 years ago
- Open source endpoint agent providing host information to Zeek. [v2]☆83Updated 2 weeks ago
- CyRIS: Cyber Range Instantiation System☆101Updated 6 months ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆105Updated last year
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆170Updated 2 years ago
- A website and framework for testing NIDS detection☆57Updated 3 years ago
- Python API Client for Cortex☆32Updated 3 years ago
- All the IOC's I have gathered which are used directly involved coronavirus / covid-19 / SARS-CoV-2 cyber attack campaigns☆65Updated 4 years ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆110Updated 2 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Updated 3 years ago
- A lightweight tool to load Windows Event Log evtx files into Elasticsearch.☆117Updated 4 years ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated this week
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆41Updated 2 years ago
- Kibana 6 Templates for Suricata IDPS Threat Hunting☆24Updated 6 years ago
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆263Updated 2 years ago