set-element / auditdBroFramework
The Auditd Framework logs and applies security policy to linux auditd data
☆15Updated 7 years ago
Alternatives and similar repositories for auditdBroFramework:
Users that are interested in auditdBroFramework are comparing it to the libraries listed below
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 9 years ago
- Crawl certificate information from censys☆8Updated 8 years ago
- ☆15Updated 10 months ago
- Set of scripts to index PCAP files and retrieve packets☆14Updated 9 years ago
- Cli interface to threatcrowd.org☆19Updated 7 years ago
- scan-detection policies for bro☆15Updated last month
- Detect malicious domain, Blablablablabla☆26Updated 8 years ago
- The FastIR Server is a Web server to schedule FastIR Collector forensics collect thanks to the FastIR Agent☆12Updated 7 years ago
- Detect Phishing with Bro IDS☆18Updated 8 years ago
- Flexible framework that allows automation to process cyber threat information and update endpoint defense tools.☆21Updated 6 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 8 years ago
- (Unofficial) Python API for https://sslbl.abuse.ch/☆11Updated 8 years ago
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated 4 months ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 3 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 7 years ago
- An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk☆23Updated 6 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆37Updated 4 months ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- ☆19Updated 8 years ago
- A framework that correlates Bro events☆18Updated 11 years ago
- ☆24Updated 5 years ago
- DNS Enumeration and Reconnaissance Tool☆37Updated 9 years ago
- Network Forensics Workshop Files☆17Updated 9 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- Exfiltration Framework - Exfiltration modeling tool written in Python. Naisho attempts to avoid detection from DLP, IPS/IDS egress filter…☆38Updated 10 years ago
- ☆22Updated 7 years ago
- ☆15Updated 6 years ago