set-element / auditdBroFrameworkLinks
The Auditd Framework logs and applies security policy to linux auditd data
☆15Updated 7 years ago
Alternatives and similar repositories for auditdBroFramework
Users that are interested in auditdBroFramework are comparing it to the libraries listed below
Sorting:
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 9 years ago
- brocon-15 scripts☆13Updated 8 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆41Updated 5 years ago
- Cli interface to threatcrowd.org☆20Updated 8 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 5 years ago
- ☆20Updated 9 years ago
- Passive DNS V2☆60Updated 11 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Bro, Moloch☆61Updated 8 years ago
- Detect Phishing with Bro IDS☆19Updated 8 years ago
- A package manager for Zeek☆47Updated last week
- integrating bro into yara☆33Updated 11 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk☆23Updated 7 years ago
- Help summarize a PCAP file☆33Updated 14 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆40Updated last year
- Detect malicious domain, Blablablablabla☆26Updated 9 years ago
- Scripts that are suited for blue teams☆33Updated 9 years ago
- An ICAP Server with yara scanner for URL and content.☆58Updated last year
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 10 years ago
- ☆85Updated 12 years ago
- Network Forensics Workshop Files☆17Updated 10 years ago
- Debian and Red Hat packaging for SIE DNS sensor☆15Updated 2 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 11 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 10 years ago
- Passive DNS visualization and Passive DNS server toolkit☆35Updated 13 years ago
- DNS Enumeration and Reconnaissance Tool☆36Updated 10 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 8 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆98Updated 11 years ago
- Honeypot log processor to create OTX Pulse entries☆28Updated 2 years ago