rhaist / surevego
suricata eve.json parser in Go
☆15Updated 5 years ago
Alternatives and similar repositories for surevego:
Users that are interested in surevego are comparing it to the libraries listed below
- Simple streaming pre-processor and enrichment tool for structured logs.☆11Updated 2 years ago
- Go implementation of the Community ID flow hashing standard☆20Updated 2 weeks ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆52Updated 2 weeks ago
- Go Client for Suricata (Interacting via Socket)☆12Updated 4 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆88Updated last year
- Freki is a tool to manipulate packets in usermode using NFQUEUE and golang.☆58Updated 2 years ago
- A Go(lang) IDS rule parser☆13Updated 5 years ago
- APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)☆53Updated 5 months ago
- ☆66Updated 9 years ago
- Virustotal API for Go☆65Updated 6 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 11 months ago
- A Go(lang) Library for Handling Snort and Suricata unified2 Log Files☆17Updated 3 years ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 5 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆16Updated last year
- Full packet capture with flow cutoff, rotation, and compression☆15Updated 6 years ago
- Golang Library to interact with your MISP instance☆21Updated 5 years ago
- Collect autorun records from running system☆61Updated 3 years ago
- Custom network stack in Go☆27Updated 8 years ago
- Application and service identification rules for Suricata☆18Updated 2 years ago
- A golang DNS monitor inspired by https://github.com/gamelinux/passivedns☆29Updated 3 weeks ago
- Golang parser for OLE files☆31Updated last month
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- The Data Analysis Pipeline☆17Updated 6 years ago
- SSDEEP hash lib in Golang☆106Updated last year
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 7 months ago
- Go library MalShare API☆12Updated 6 years ago
- Passive DNS server interface compliant to "Common Output Format"☆10Updated 8 years ago
- eBPF-based EDR for Linux☆17Updated 8 months ago