Expandable Defensive Cyber Operations Platform
☆44Sep 28, 2022Updated 3 years ago
Alternatives and similar repositories for EDCOP
Users that are interested in EDCOP are comparing it to the libraries listed below
Sorting:
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Oct 31, 2018Updated 7 years ago
- ☆24Mar 29, 2020Updated 5 years ago
- Generate network maps from packet captures☆30Sep 15, 2019Updated 6 years ago
- scan-detection policies for bro☆16Jan 16, 2025Updated last year
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44May 9, 2024Updated last year
- Bro-IDS scripts☆50Sep 12, 2016Updated 9 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Jul 23, 2015Updated 10 years ago
- JoeSandbox-Bro is a simple bro script which extracts files from your internet connection and analyzes them automatically on Joe Sandbox☆44Jun 6, 2019Updated 6 years ago
- Stealth is a File Integrity scanner performing its work in a stealthy way.☆12Jun 25, 2018Updated 7 years ago
- ☆10Jun 2, 2020Updated 5 years ago
- Full packet capture with flow cutoff, rotation, and compression☆15Sep 18, 2018Updated 7 years ago
- Bro Intel Feed Linter☆26Aug 30, 2019Updated 6 years ago
- Enables Zeek to communicate with Tenzir☆11Jul 20, 2023Updated 2 years ago
- brocon-15 scripts☆13Apr 3, 2017Updated 8 years ago
- Open-source decompilation of Disstrack☆12Oct 18, 2016Updated 9 years ago
- trivial transparent SMTP proxy☆13Dec 6, 2022Updated 3 years ago
- ☆14Jan 14, 2026Updated 2 months ago
- Zeek plugin to generate data on per-packet sizes and intervals☆14Apr 21, 2020Updated 5 years ago
- Zeek script library for getting the effective TLD of a domain.☆13Apr 12, 2024Updated last year
- Snort/Suricata DAQ module with DPDK patch☆11Apr 10, 2024Updated last year
- Experimental hostapd/wpa_supplicant that allows automatic MACsec channel establishment☆11Sep 5, 2017Updated 8 years ago
- ☆17Dec 9, 2014Updated 11 years ago
- Starter files for Shopping List App challenge☆10Jan 7, 2021Updated 5 years ago
- Ready to run scripts for network analysis☆91Mar 20, 2025Updated last year
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25May 19, 2022Updated 3 years ago
- A Python implementation of the Community ID flow hashing standard☆23Nov 29, 2023Updated 2 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Nov 29, 2017Updated 8 years ago
- ☆13Oct 7, 2019Updated 6 years ago
- SANS Hunting on the Cheap☆36Apr 12, 2016Updated 9 years ago
- Plugin providing native AF_Packet support for Zeek.☆33Oct 22, 2025Updated 4 months ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Oct 15, 2020Updated 5 years ago
- Steve McCanne's Sharkfest '21 Talk☆16Oct 12, 2021Updated 4 years ago
- Suricata Extreme Performance Tuning guide☆213Mar 15, 2018Updated 8 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆108Jun 6, 2024Updated last year
- An ELK environment containing interesting security datasets.☆136May 11, 2020Updated 5 years ago
- The Stamus Networks App for Splunk allows Splunk Enterprise users to extract information and insights from both the Stamus Security Plat…☆13Jan 7, 2026Updated 2 months ago
- An open standard for hashing network flows into identifiers, a.k.a "Community IDs".☆194Sep 23, 2024Updated last year
- A program that uses xapian to index the flat file databases used by nfdump or flow-tools☆36Mar 26, 2018Updated 7 years ago
- Network Forensics Bro scripts & pcap samples☆63Mar 11, 2014Updated 12 years ago