pauloangelo / hogzilla
Hogzilla is an Intrusion Detection System (IDS) supported by Snort, Apache Spark, HBase and libnDPI, which provides Network Anomaly Detection. Many Learning Models are already implemented.
☆28Updated 6 years ago
Alternatives and similar repositories for hogzilla:
Users that are interested in hogzilla are comparing it to the libraries listed below
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Packetpig - Open Source Big Data Security Analytics☆299Updated 6 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 9 months ago
- The stratosphere testing framework is mean to help in the researching and verification of the behavioral models used by the Stratoshpere …☆50Updated 6 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated last year
- Bro-IDS scripts☆50Updated 8 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Apache Metron☆59Updated 4 years ago
- Misc. Bro scripts☆63Updated 7 years ago
- Bro scripts to be shared with the community☆109Updated 11 years ago
- Analysis scripts for the Bro Intrusion Detection System☆59Updated 10 years ago
- A RESTful API frontend for Stenographer☆55Updated 2 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- Data Analysis and Visualization Linux Toolset☆58Updated 7 years ago
- Ipython notebook that illustrates effectiveness of machine learning algorithms in anomaly detection of netflow data (inbound/outbound DDo…☆78Updated 7 years ago
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 10 years ago
- User interface for OpenSOC☆100Updated 9 years ago
- ☆17Updated 5 years ago
- Dockerfiles for NSM tools☆84Updated 7 years ago
- Meeting notes☆15Updated 8 years ago
- Bro Snippets☆21Updated 10 years ago
- ☆23Updated 4 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- Hakabana monitoring tool using Haka, ElastcSearch and Kibana☆20Updated 10 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Updated 7 years ago
- Rule sets for Sagan☆102Updated 4 years ago
- viewssld is a free, open source, non-terminating SSLv2/SSLv3/TLS traffic decryption daemon for Snort, and other Network Intrusion Detecti…☆74Updated 7 years ago
- Docker container for MISP☆96Updated 6 years ago
- Zeek support for Community ID flow hashing.☆35Updated last year
- A framework for receiving and redistributing abuse feeds☆122Updated 5 years ago