sysflow-telemetry / sysflowLinks
SysFlow documentation and issues tracker
☆46Updated last year
Alternatives and similar repositories for sysflow
Users that are interested in sysflow are comparing it to the libraries listed below
Sorting:
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- A repository to store Rad Fingerprinting data.☆24Updated last year
- Suricata Verification Tests - Testing Suricata Output☆117Updated last week
- Red Canary's eBPF Sensor☆112Updated 6 months ago
- Open source endpoint agent providing host information to Zeek. [v2]☆90Updated last month
- Tools for conducting analysis of CVE data in Elasticsearch☆73Updated 5 months ago
- Understand OVAL results in a blink of an eye☆35Updated 3 years ago
- A process level network security monitoring and enforcement project for Kubernetes, using eBPF☆44Updated 5 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆84Updated last week
- A repository for OSSEC rules and decoders☆54Updated 2 years ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆74Updated 3 years ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆112Updated 7 months ago
- Falco rule repository☆149Updated 2 weeks ago
- Linux Kernel Runtime Integrity with eBPF☆184Updated 2 years ago
- Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)☆92Updated 8 months ago
- ☆189Updated 2 weeks ago
- A lightweight tool to score network traffic and flag anomalies☆123Updated last year
- Cisco Orbital - Osquery queries by Talos☆136Updated last year
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated last month
- Zeek package for tracking long connections to report them before they have completed.☆31Updated last month
- Build a local copy of CPE(Common Platform Enumeration)☆104Updated 2 weeks ago
- The OpenDXL Ontology project is focused on the development of an open and interoperable cybersecurity messaging format for use with the O…☆76Updated 4 years ago
- simple YARA-based IOC scanner☆172Updated 3 weeks ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆69Updated last week
- Osquery Resources☆63Updated 6 years ago
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆58Updated last year
- bpflock - eBPF driven security for locking and auditing Linux machines☆151Updated 3 years ago
- Provide a shell like interface by utilizing osquery's distributed API☆81Updated 5 years ago
- Suricata Extreme Performance Tuning guide - Mark II☆121Updated 7 years ago
- Kestrel Jupyter Notebook Kernel☆10Updated 2 years ago