sealingtech / EDCOP-SURICATALinks
☆10Updated 5 years ago
Alternatives and similar repositories for EDCOP-SURICATA
Users that are interested in EDCOP-SURICATA are comparing it to the libraries listed below
Sorting:
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆57Updated last month
- A library and a tool for converting audit logs to XML and JSON☆46Updated 7 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆95Updated last year
- Validate if afpacket PACKET_FANOUT_HASH is working properly☆25Updated 3 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated last month
- Generate arbitrary NetFlow V5 flow records☆40Updated 11 months ago
- Pre-configured environment that supports the development and running of OpenDXL solutions☆13Updated 4 years ago
- network message encapsulation library☆30Updated 2 months ago
- A solution for using the ElastiFlow Unified Collector with the Elastic Stack (Elasticsearch and Kibana).☆26Updated last month
- Package build sources for building RHEL/CentOS packages☆17Updated this week
- Logstash codec plugin to decrypt sflow☆34Updated 2 years ago
- flexible, structured event replication format for DNS servers (Protocol Buffers schema)☆27Updated 10 months ago
- flexible, structured event replication format for DNS servers (command-line tool and Golang package)☆145Updated last year
- VulsRepo is visualized based on the json report output in vuls.☆35Updated 4 years ago
- NetFlow Generator for Testing Flow Collection Apps☆125Updated 2 years ago
- Convert network filtering rules from various formats into BPF programs☆68Updated 5 years ago
- Testbed for testing NetFlow/IPFIX network monitoring probes. Includes tools for PCAP generation and replay of 1/10/100G network traffic.☆53Updated last week
- ☆41Updated 4 years ago
- This repo aims to offer a packet flow tracer based on bpf☆13Updated 6 years ago
- Expandable Defensive Cyber Operations Platform☆43Updated 3 years ago
- Falco plugins SDK for Go☆26Updated 3 weeks ago
- High Speed PCAP to JSON conversion utility☆107Updated last year
- A docker-based lab to play with BGP Large Communities☆72Updated 5 years ago
- Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG App…☆71Updated 8 months ago
- Meer is a "spooler" for Suricata / Sagan.☆30Updated 2 years ago
- Syslog collection with the Elastic Stack.☆32Updated 2 years ago
- server for indexing and querying passive DNS observations☆49Updated last month
- ☆41Updated 8 years ago
- setup zeek, previously Bro IDS☆18Updated this week
- OwlH Master API☆24Updated 7 months ago