rhaist / surevego
suricata eve.json parser in Go
☆15Updated 6 years ago
Alternatives and similar repositories for surevego
Users that are interested in surevego are comparing it to the libraries listed below
Sorting:
- Simple streaming pre-processor and enrichment tool for structured logs.☆11Updated 2 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆53Updated last month
- Go Client for Suricata (Interacting via Socket)☆12Updated 4 years ago
- Go implementation of the Community ID flow hashing standard☆20Updated last month
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- Freki is a tool to manipulate packets in usermode using NFQUEUE and golang.☆57Updated 2 years ago
- Virustotal API for Go☆65Updated 6 years ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- Collect autorun records from running system☆60Updated 3 years ago
- Go library MalShare API☆12Updated 6 years ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- A Go(lang) IDS rule parser☆13Updated 5 years ago
- ☆66Updated 9 years ago
- A Go(lang) Library for Handling Snort and Suricata unified2 Log Files☆17Updated 3 years ago
- Golang port of pefile☆23Updated 7 years ago
- Go bindings for NFQueue☆51Updated 8 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆88Updated last year
- APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)☆52Updated 5 months ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 5 years ago
- SSDEEP hash lib in Golang☆107Updated last year
- Golang parser for OLE files☆32Updated 2 months ago
- Netfilter queue binding in go☆38Updated 4 years ago
- gyp: A pure Go YARA parser☆106Updated last year
- Fast Golang PCAP Reader & Benchmark Comparison☆76Updated 6 years ago
- NFDump File Reader☆11Updated 7 months ago
- A golang DNS monitor inspired by https://github.com/gamelinux/passivedns☆29Updated 3 weeks ago
- A pure Go library for working with Structured Threat Information Expression (STIX™) version 2.x data☆23Updated last month
- eBPF-based EDR for Linux☆17Updated 9 months ago
- Parsing .pcap files for humans.☆35Updated 10 years ago
- Go library for subscribing to Windows Event Log☆30Updated 6 years ago