pentestfail / Bro-KEN
An engine for Bro IDS using Kibana, ElasticSearch, & NXLOG (KEN)
☆10Updated 9 years ago
Related projects: ⓘ
- Bit9 Platform☆20Updated 7 years ago
- Simple block lists hub for PAN-OS DBL feature☆35Updated 5 years ago
- Allows for MAC address to vendor mapping in Splunk☆16Updated 11 months ago
- Bro script package to create JSON formatted logs to stream into data analysis systems.☆27Updated 9 months ago
- Push "BAD" IPs/Networks into QRadar's "Remote Networks", tag them properly, and use them!☆17Updated 10 years ago
- ☆11Updated last year
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 9 years ago
- Maps process creation logged by Sysmon uses Google Org Chart API☆24Updated 8 years ago
- MineMeld nodes for MISP☆18Updated 7 months ago
- This module is used to report phishing URLs to their WHOIS/RDAP abuse contact information.☆42Updated 7 years ago
- PowerShell Module for automating Tenable Nessus Vulnerability Scanner.☆88Updated last year
- ☆39Updated this week
- Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was …☆76Updated 6 years ago
- Dockerfiles for NSM tools☆84Updated 7 years ago
- Bro scripts for the ROCK platform. http://rocknsm.io☆33Updated last year
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- WebUI of MineMeld☆43Updated last year
- Miscellaneous PowerShell scripts☆58Updated 4 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 3 years ago
- Apps for Splunk Phantom security automation | Cisco Meraki | Ansible Tower | F5 | A10☆25Updated 4 years ago
- Sysmon Splunk App☆46Updated 6 years ago
- ☆24Updated 4 years ago
- Dashboards and loader for ROCK NSM dashboards☆47Updated last year
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated 4 months ago
- ☆20Updated this week
- ☆73Updated this week
- Contains log parsers for Logstash for many systems and applications. Also contains many methods of augmenting logs.☆55Updated 6 years ago
- Remotely Install the Carbon Black Sensor in Bulk, using PowerShell and PSEXEC, silently, on multiple machines.☆23Updated 4 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 7 years ago
- Zeek scripting language highlighting/support for Sublime Text☆19Updated 3 years ago