simple-evcorr / sec
Simple Event Correlator releases
☆179Updated 2 months ago
Alternatives and similar repositories for sec:
Users that are interested in sec are comparing it to the libraries listed below
- Simple Event Correlator ruleset repository☆32Updated 3 years ago
- sudosh is an auditing shell filter and can be used as a login shell. Sudosh records all keystrokes and output and can play back the sessi…☆83Updated 10 months ago
- DNS Statistics Collector☆108Updated 2 months ago
- Centralize or distribute IPset blacklists☆116Updated 8 months ago
- tel script - manage telnet or ssh for routers/switches and other devices☆28Updated 5 months ago
- ** README ** This repo has MOVED to https://github.com/quadrantsec/sagan☆228Updated 3 years ago
- ☆78Updated 11 months ago
- DNS Replay Tool☆80Updated 2 months ago
- DEPRECATED -- Strongly consider using the upstream, the version here is very out of date and a poor place to start from!☆218Updated 6 years ago
- An application to extract User-to-IP mappings from RADIUS accounting data and send them to Palo Alto firewalls for use by the User-ID fun…☆34Updated 2 years ago
- PassiveDNS in Go☆124Updated 5 years ago
- IPFIXcol is an implementation of an IPFIX (RFC 7011) collector☆65Updated 4 years ago
- A library and a tool for converting audit logs to XML and JSON☆43Updated 7 years ago
- Enterprise Log Search and Archive☆208Updated 6 years ago
- Network forwarding performance benchmark results☆67Updated 3 months ago
- A universal framework for device management automation. Eventually a replacement for RANCID... and much more☆69Updated 7 years ago
- UCARP allows a couple of hosts to share common virtual IP addresses in order to provide automatic failover. It is a portable userland imp…☆171Updated 5 years ago
- DEAD: Qbana (Ω) is a Kibana3 Fork with additional (DEPRECATED)☆86Updated 8 years ago
- ☆42Updated 4 years ago
- Network capture utility designed specifically for DNS traffic☆279Updated 2 months ago
- A tool similar to arpwatch for IPv4/IPv6 and ethernet address pairing monitoring.☆190Updated 2 years ago
- handle DNS NOTIFY messages by running a command☆41Updated last month
- Project moved to https://gitlab.com/fredbcode/Vrrpd Advanced Vrrpd That version has many improvements like monitoring other vrrpd process…☆76Updated last year
- Passive Real-time Asset Detection System☆233Updated 8 months ago
- Docker based Suricata, Elasticsearch, Logstash, Kibana, Scirius aka SELKS☆184Updated 2 years ago
- Some small network-related utilities☆34Updated 8 years ago
- Advanced network calculator and address planning helper☆21Updated 7 years ago
- ExaBGP based automated blocklist for Spamhaus DROP/EDROP and Emerging Threats blocklists for Ubiquiti EdgeRouters (and possibly Vyatta vR…☆35Updated 9 years ago
- Shell wrapper to run a login shell with `sudo` as the current user for the purpose of audit logging☆94Updated 2 years ago
- Suricata Extreme Performance Tuning guide☆205Updated 6 years ago