ncsa / ossec-tools
Scripts and integrations for OSSEC
☆39Updated 8 years ago
Alternatives and similar repositories for ossec-tools:
Users that are interested in ossec-tools are comparing it to the libraries listed below
- Dockerfiles for NSM tools☆84Updated 7 years ago
- Dashboards and loader for ROCK NSM dashboards☆48Updated last year
- ☆24Updated 5 years ago
- ☆72Updated 3 years ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Updated 5 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 9 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Updated 3 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- bro on debian with elasticsearch support☆24Updated 7 years ago
- Bro scripts to be shared with the community☆109Updated 11 years ago
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 10 years ago
- Isolated, Scalable, & Lightweight Environment for Training☆111Updated 5 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 7 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 10 years ago
- Scripts for Bro IDS and ELK Stack☆56Updated 9 years ago
- ☆38Updated 6 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 7 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 10 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆47Updated 6 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 6 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated last month
- Docker container for MISP☆96Updated 6 years ago
- ☆64Updated 2 years ago
- ☆140Updated 8 months ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 7 years ago
- MISP - Ansible installation script☆22Updated 5 years ago
- Security Onion Elastic Stack☆46Updated 3 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago