robcowart / synesis_lite_snort
Snort IDS/IPS log analytics using the Elastic Stack.
☆86Updated 3 years ago
Alternatives and similar repositories for synesis_lite_snort:
Users that are interested in synesis_lite_snort are comparing it to the libraries listed below
- Suricata IDS/IPS log analytics using the Elastic Stack.☆238Updated 3 years ago
- Web service for scanning pcaps with snort☆108Updated 6 years ago
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆109Updated 10 months ago
- Zeek IDS Dockerfile☆101Updated 2 years ago
- Snort in Docker for Network Functions Virtualization (NFV)☆107Updated 5 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆170Updated last year
- How to send structured Snort IDS alert logs into Graylog☆27Updated last year
- Templates for Kibana/Logstash to use with Suricata IDPS☆80Updated 9 years ago
- Passive Real-time Asset Detection System☆234Updated 9 months ago
- Kibana 6 Templates for Suricata IDPS Threat Hunting☆24Updated 6 years ago
- A lightweight tool to score network traffic and flag anomalies☆123Updated 7 months ago
- Suricata Extreme Performance Tuning guide☆206Updated 7 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆40Updated 2 years ago
- The tool for updating your Suricata rules.☆266Updated 3 months ago
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆153Updated last year
- Docker files for building Zeek.☆86Updated last year
- Kibana 5 Templates for Suricata IDPS☆43Updated 6 years ago
- Rule sets for Sagan☆102Updated 4 years ago
- Suricata Extreme Performance Tuning guide - Mark II☆115Updated 6 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆102Updated 9 months ago
- Tool for managing Zeek deployments.☆54Updated this week
- Wazuh - Splunk App☆52Updated 6 months ago
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆449Updated 2 weeks ago
- a network packet capture compiler☆197Updated 2 years ago
- Passive DNS collection using Zeek☆182Updated last year
- How to Zeek Sysmon Logs!☆102Updated 3 years ago
- SIAC is an enterprise SIEM built on open-source technology.☆114Updated 6 years ago
- ☆23Updated 5 years ago
- Snort + Barnyard2 + Pulledpork → The easy way!☆167Updated 4 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago