sealingtech / EDCOP-SURICATA
☆9Updated 4 years ago
Related projects: ⓘ
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆50Updated 2 months ago
- ☆42Updated 3 years ago
- A library and a tool for converting audit logs to XML and JSON☆41Updated 6 years ago
- flexible, structured event replication format for DNS servers (Protocol Buffers schema)☆24Updated 6 months ago
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25Updated 2 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated 8 months ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 4 months ago
- No elephant flows - flow shunting for Arista switches using EOS API☆27Updated 3 years ago
- Expandable Defensive Cyber Operations Platform☆43Updated last year
- ☆11Updated 6 years ago
- aggregate IP flow data for storage in a ClickHouse database☆20Updated 5 months ago
- certgrep is a cross-platform command line tool that extracts SSL certificates from either a network interface or a local PCAP file.☆17Updated 2 years ago
- CEF plugin for audisp (Linux Audit)☆23Updated 8 years ago
- Demo for Elastic's Auditbeat and SIEM☆24Updated 3 years ago
- LSDN: Linux Software Defined Network☆25Updated 3 years ago
- A network security policy compiler. Netspoc is targeted at environments with a large number of firewalls and admins. Firewall rules are d…☆67Updated this week
- ☆52Updated this week
- nfsinkhole is a Python library and scripts for setting up a Linux server as a sinkhole (monitor, log/capture, and drop all traffic to a s…☆12Updated 7 years ago
- Zeek support for Community ID flow hashing.☆32Updated last year
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆33Updated 3 weeks ago
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- rulebases for normalization with liblognorm☆12Updated 8 years ago
- network message encapsulation library☆30Updated this week
- things to assist in packet analysis☆26Updated last year
- This repo aims to offer a packet flow tracer based on bpf☆13Updated 4 years ago
- Suricata RPMs for CentOS/RHEL and Fedora☆19Updated last week
- Simple Event Correlator ruleset repository☆31Updated 2 years ago
- Convert an IPFIX stream to readable JSON☆26Updated 7 years ago
- Kibana 5 Templates for Suricata IDPS☆43Updated 6 years ago
- A low/zero interaction ssh authentication logging honeypot☆17Updated last month