nickmaccarthy / CEFlyLinks
CEF ( Common Event Format ) exporting app for Splunk written in python
☆15Updated 12 years ago
Alternatives and similar repositories for CEFly
Users that are interested in CEFly are comparing it to the libraries listed below
Sorting:
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 8 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 8 years ago
- ☆36Updated 9 years ago
- Scripts for Bro IDS and ELK Stack☆57Updated 10 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 6 years ago
- ☆142Updated last year
- Scripts used to create ISO installers of ROCK for offline installation.☆10Updated 2 years ago
- Splunk app to support presentation at .conf2015 on free security tools and Splunk☆10Updated 10 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was …☆80Updated 7 years ago
- Python library for the ArcSight logger REST API☆27Updated 4 years ago
- MISP - Ansible installation script☆22Updated 6 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.☆51Updated 7 years ago
- Unification of dnstwist + SQLite + Email reporting. Set it as a cron job that runs every hour, give it a list of domains and email addres…☆67Updated 7 years ago
- ArcSight's Common Event Format library☆39Updated 2 years ago
- Honeypot repo☆48Updated 10 years ago
- Sysmon Splunk App☆47Updated 7 years ago
- The Bro/Zeek language cheat sheet☆53Updated 12 years ago
- Threat Analysis, Reconnaissance, and Data Intelligence System☆125Updated 10 years ago
- ☆48Updated 9 years ago
- Isolated, Scalable, & Lightweight Environment for Training☆111Updated 6 years ago
- Simple Microsoft Windows sessions event logs visualization☆153Updated 3 years ago
- Python script that gets IOC from MISP and converts it into BRO intel files.☆13Updated 9 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Updated 4 years ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Updated 6 years ago
- Python script to pull various IOCs from PDFs☆15Updated 10 years ago