Scripts and integrations for OSSEC
☆41Mar 18, 2016Updated 10 years ago
Alternatives and similar repositories for ossec-tools
Users that are interested in ossec-tools are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Feb 20, 2017Updated 9 years ago
- scripts to help beginners program in Bro☆21Aug 10, 2013Updated 12 years ago
- Grabs the administrator and authentication logs from the Duo Security API and sends CEF-formatted syslog.☆27Aug 22, 2016Updated 9 years ago
- defendA Data Lake. A firehose pipeline to athena providing enrichment and normalization for security events☆17Mar 19, 2026Updated 3 months ago
- Bro Intel Feed Linter☆26Aug 30, 2019Updated 6 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Lightweight and sexy Security Information and Event Managment system for OSSEC, Snort and other IDS/IPS☆111Mar 12, 2021Updated 5 years ago
- Windows file metadata / forensic tool.☆20May 31, 2026Updated last month
- Management scripts for Logstash over ES☆50Aug 16, 2021Updated 4 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Jan 6, 2021Updated 5 years ago
- Dockerfiles for NSM tools☆84Apr 14, 2017Updated 9 years ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 6 years ago
- A MITRE Caldera plugin written in Python 3 used to convert Red Canary Atomic Red Team Tests to MITRE Caldera Stockpile YAML ability files…☆75Oct 14, 2021Updated 4 years ago
- Ossec cookbook for Chef, with secure & automated key management☆21Jun 13, 2013Updated 13 years ago
- Ansible playbook for Fluentd☆16Jan 16, 2015Updated 11 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Scripts to threat optics stack quickly / abbreviated and automated. Run after APT-Lab-Terraform☆13Oct 24, 2020Updated 5 years ago
- Mitigates CVE-2016-5195 aka DirtyCOW☆10Oct 23, 2016Updated 9 years ago
- OSSEC HIDS - Sucuri Fork☆11Feb 12, 2021Updated 5 years ago
- Zeek package to generate a SMB client fingerprint☆27May 5, 2020Updated 6 years ago
- Custom Fortify SCA rules to detect common JSSE certification validation flaws☆11Nov 18, 2015Updated 10 years ago
- Ansible Inventory plugin for use with AWS EC2☆14Jun 5, 2015Updated 11 years ago
- A collection of Bro scripts I've written☆41Jun 5, 2015Updated 11 years ago
- RPM packages for MISP☆41Jun 22, 2026Updated last week
- ☆142May 24, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A framework that correlates Bro events☆18Oct 25, 2013Updated 12 years ago
- Zeek package for detecting the Eternal* exploits and a set of SMBv1 protocol violations.☆19Aug 21, 2025Updated 10 months ago
- Scripts used for phishing campaigns☆14Aug 18, 2014Updated 11 years ago
- Testing for the Cloud☆19Jan 12, 2020Updated 6 years ago
- Carbon Black Feeds☆74Apr 4, 2023Updated 3 years ago
- Check Bulk IP address for blacklist reputation☆19Dec 2, 2017Updated 8 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Feb 20, 2024Updated 2 years ago
- This project is no longer maintained. There's a successor at https://github.com/zeek/zeek-agent-v2☆122Nov 19, 2020Updated 5 years ago
- Various Bro scripts☆37May 20, 2014Updated 12 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Oct 12, 2020Updated 5 years ago
- Host files with DNS☆32Mar 1, 2016Updated 10 years ago
- Contributed Bro Scripts☆30May 28, 2014Updated 12 years ago
- DEPRECATED - USE v3 (bearded-avenger)☆230Jan 16, 2018Updated 8 years ago
- A set of nulecule-ized applications that can be used for reference or as part of your applications☆26Oct 21, 2016Updated 9 years ago
- Broctl plugin for automatically executing 'setcap' on each node after an install☆13Dec 18, 2020Updated 5 years ago
- Small App for reading from MHN's hpfeeds broker and writing splunk logs☆10Sep 30, 2019Updated 6 years ago