nickmaccarthy / CEFlyLinks
CEF ( Common Event Format ) exporting app for Splunk written in python
☆15Updated 12 years ago
Alternatives and similar repositories for CEFly
Users that are interested in CEFly are comparing it to the libraries listed below
Sorting:
- Scripts for Bro IDS and ELK Stack☆57Updated 10 years ago
- ☆36Updated 9 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 8 years ago
- Scripts used to create ISO installers of ROCK for offline installation.☆10Updated 2 years ago
- Queries to parse sysmon event log file with microsoft logparser☆58Updated 10 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 6 years ago
- Harbinger Threat Intelligence☆83Updated 10 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 8 years ago
- Python library for the ArcSight logger REST API☆27Updated 4 years ago
- Docker container for MISP☆96Updated 7 years ago
- ☆142Updated last year
- Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was …☆79Updated 8 years ago
- ☆48Updated 10 years ago
- Sysmon Splunk App☆47Updated 7 years ago
- Modern Honey Network deployment with ansible☆12Updated 3 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- Virustotal Lookup filter for Logstash☆16Updated 8 years ago
- ☆50Updated 5 years ago
- PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.☆51Updated 8 years ago
- ☆55Updated 3 years ago
- brocon-15 scripts☆13Updated 8 years ago
- Utilities and scripts for bro-ids☆23Updated 12 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 10 years ago
- Threat Intelligence distribution☆31Updated 10 years ago
- ☆15Updated 6 years ago
- Python script that gets IOC from MISP and converts it into BRO intel files.☆13Updated 9 years ago
- InvestigationPlaybookSpec☆71Updated 8 years ago
- Dockerfiles for NSM tools☆84Updated 8 years ago
- ☆72Updated 4 years ago