robcowart / synesis_lite_suricata
Suricata IDS/IPS log analytics using the Elastic Stack.
☆238Updated 3 years ago
Alternatives and similar repositories for synesis_lite_suricata:
Users that are interested in synesis_lite_suricata are comparing it to the libraries listed below
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆452Updated this week
- Scirius is a web application for Suricata ruleset management and threat hunting.☆646Updated 3 months ago
- Snort IDS/IPS log analytics using the Elastic Stack.☆86Updated 3 years ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆473Updated 2 months ago
- The tool for updating your Suricata rules.☆266Updated 3 months ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆170Updated last year
- Security event correlation engine for ELK stack☆436Updated 9 months ago
- idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)☆281Updated last year
- A Suricata Docker image.☆277Updated last week
- Plugins for Wazuh Dashboard☆450Updated this week
- Suricata rules for network anomaly detection☆156Updated 2 weeks ago
- Passive Real-time Asset Detection System☆235Updated 10 months ago
- Wazuh - Ruleset☆438Updated 6 months ago
- Suricata Extreme Performance Tuning guide☆207Updated 7 years ago
- Suricata Extreme Performance Tuning guide - Mark II☆115Updated 6 years ago
- a network packet capture compiler☆198Updated 2 years ago
- A Linux Auditd rule set mapped to MITRE's Attack Framework☆787Updated 4 years ago
- The OTX Suricata Rule Generator can be used to create the rules and configuration for Suricata to alert on indicators from your OTX accou…☆109Updated 11 months ago
- A Zeek log writer plugin that publishes to Kafka.☆46Updated 2 months ago
- Mapping the MITRE ATT&CK Matrix with Osquery☆790Updated last year
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆153Updated last year
- Documentation of Cortex☆174Updated last year
- Zeek IDS Dockerfile☆101Updated 2 years ago
- Sagan is a multi-threads, high performance log analysis engine. At it's core, Sagan similar to Suricata/Snort but with logs rather th…☆166Updated this week
- Snort + Barnyard2 + Pulledpork → The easy way!☆167Updated 4 years ago
- Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark☆434Updated last year
- Suricata Verification Tests - Testing Suricata Output☆105Updated this week
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆392Updated this week
- Contains Logstash related content including tons of Logstash configurations☆253Updated 3 years ago
- Create actionable data from your Vulnerability Scans☆1,373Updated 2 years ago