nickmaccarthy / CEFlyLinks
CEF ( Common Event Format ) exporting app for Splunk written in python
☆15Updated 12 years ago
Alternatives and similar repositories for CEFly
Users that are interested in CEFly are comparing it to the libraries listed below
Sorting:
- ☆142Updated last year
- Scripts used to create ISO installers of ROCK for offline installation.☆10Updated 2 years ago
- Scripts for Bro IDS and ELK Stack☆57Updated 10 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 8 years ago
- Python library for the ArcSight logger REST API☆27Updated 4 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- ☆36Updated 9 years ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Updated 6 years ago
- ☆48Updated 9 years ago
- Compare multiple log formats against malware reputation lists.☆88Updated 8 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 6 years ago
- Docker container for MISP☆96Updated 7 years ago
- Simple block lists hub for PAN-OS DBL feature☆35Updated 6 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- Splunk app to support presentation at .conf2015 on free security tools and Splunk☆10Updated 10 years ago
- Threat Analysis, Reconnaissance, and Data Intelligence System☆125Updated 10 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Updated 4 years ago
- Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was …☆80Updated 7 years ago
- PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.☆50Updated 7 years ago
- Dashboards and loader for ROCK NSM dashboards☆49Updated 2 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- Network Forensics Bro scripts & pcap samples☆63Updated 11 years ago
- ☆24Updated 5 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Simple Microsoft Windows sessions event logs visualization☆152Updated 3 years ago
- Evolving directions on building the best Open Source Forensics VM☆161Updated 7 years ago
- brocon-15 scripts☆13Updated 8 years ago
- Python unbup script for McAfee .bup files (with some additional fun features). This script is fully implemented in python it's not just a…☆37Updated 7 years ago