rhaist / surevego
suricata eve.json parser in Go
☆14Updated 5 years ago
Related projects: ⓘ
- Go implementation of the Community ID flow hashing standard☆19Updated 3 weeks ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆50Updated 2 months ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆66Updated 4 months ago
- Go Client for Suricata (Interacting via Socket)☆12Updated 4 years ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 3 years ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆25Updated 4 years ago
- APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)☆51Updated last year
- Freki is a tool to manipulate packets in usermode using NFQUEUE and golang.☆57Updated last year
- Full packet capture with flow cutoff, rotation, and compression☆15Updated 6 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆85Updated 4 months ago
- Collect autorun records from running system☆59Updated 2 years ago
- A Go(lang) Library for Handling Snort and Suricata unified2 Log Files☆17Updated 3 years ago
- Virustotal API for Go☆64Updated 5 years ago
- SSDEEP hash lib in Golang☆101Updated 5 months ago
- The Data Analysis Pipeline☆17Updated 5 years ago
- Plugin for Zeek/Bro which provides http2 decoder/analyzer☆30Updated 3 months ago
- A Go(lang) IDS rule parser☆13Updated 5 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 4 months ago
- gyp: A pure Go YARA parser☆98Updated 6 months ago
- Automatically exported from code.google.com/p/go-icap☆23Updated 8 years ago
- A pure Go library for working with Structured Threat Information Expression (STIX™) version 2.x data☆22Updated 5 months ago
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆14Updated 2 years ago
- Golang parser for OLE files☆31Updated 2 months ago
- Converts the Clamav Virus Database definitions to YARA rules [GOLANG]☆51Updated 3 years ago
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25Updated 2 years ago
- eBPF-based EDR for Linux☆15Updated 3 weeks ago
- A Spicy protocol analyzer for WireGuard☆27Updated 4 years ago
- ☆66Updated 9 years ago
- A golang DNS monitor inspired by https://github.com/gamelinux/passivedns☆29Updated this week
- Application and service identification rules for Suricata☆29Updated last year