INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning
☆26Oct 10, 2019Updated 6 years ago
Alternatives and similar repositories for zept
Users that are interested in zept are comparing it to the libraries listed below
Sorting:
- Plugin providing native AF_Packet support for Zeek.☆33Oct 22, 2025Updated 4 months ago
- Integrate Zeek with Alienvault OTX☆25Sep 11, 2020Updated 5 years ago
- ☆16Mar 28, 2019Updated 6 years ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Oct 15, 2020Updated 5 years ago
- ☆24Mar 29, 2020Updated 5 years ago
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25May 19, 2022Updated 3 years ago
- Full packet capture with flow cutoff, rotation, and compression☆15Sep 18, 2018Updated 7 years ago
- Plugin providing AF_XDP support for Bro.☆14May 10, 2021Updated 4 years ago
- Zeek support for Community ID flow hashing.☆36Jul 11, 2023Updated 2 years ago
- ☆14Jan 14, 2026Updated 2 months ago
- A Zeek script to generate features based on timing, volume and metadata for traffic classification.☆58Nov 8, 2020Updated 5 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆33Updated this week
- ☆39Dec 4, 2023Updated 2 years ago
- Enables Zeek to communicate with Tenzir☆11Jul 20, 2023Updated 2 years ago
- The Security Analyst’s Guide to Suricata☆61Apr 28, 2025Updated 10 months ago
- ☆16Dec 15, 2025Updated 3 months ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆80Sep 13, 2023Updated 2 years ago
- Extensions for Zeek's Intelligence Framework.☆11Mar 1, 2022Updated 4 years ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Feb 9, 2021Updated 5 years ago
- Dockerized Zeek☆12Mar 9, 2024Updated 2 years ago
- Suricata Extreme Performance Tuning guide - Mark II☆121Apr 17, 2018Updated 7 years ago
- A Zeek log writer plugin that publishes to Kafka.☆53Aug 18, 2025Updated 7 months ago
- A Zeek plugin to POST logs over HTTP.☆13Feb 10, 2020Updated 6 years ago
- ☆14Sep 15, 2017Updated 8 years ago
- Materials for the BSides NoVA/Charleston 2018 Bro Workshop☆14Jun 4, 2025Updated 9 months ago
- Extracting and analyzing URLs from Emails for phishing events☆21Oct 22, 2020Updated 5 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Jan 12, 2023Updated 3 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Nov 9, 2022Updated 3 years ago
- gonids is a library to parse IDS rules, with a focus primarily on Suricata rule compatibility. There is a discussion forum available that…☆193Jul 18, 2025Updated 8 months ago
- Prometheus Exporter for Zeek☆20Aug 13, 2025Updated 7 months ago
- Slides and Workshop Instructions for a BPF Introduction @Sqreen☆12Sep 10, 2019Updated 6 years ago
- python SDK for CIFv2☆13Nov 5, 2019Updated 6 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 5 years ago
- ☆16Feb 13, 2020Updated 6 years ago
- Picatrix is a library designed to help security analysts in a notebook environment, such as colab or jupyter.☆52Mar 26, 2025Updated 11 months ago
- CyCAT.org taxonomies☆15May 22, 2021Updated 4 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19May 11, 2021Updated 4 years ago
- A lightweight workshop build on the shoulders of giants.☆18Sep 13, 2019Updated 6 years ago
- Sniffpass will alert on cleartext passwords discovered in HTTP POST requests☆17Oct 30, 2023Updated 2 years ago