trisulnsm / apps
Plugin packages that provide custom visualizations and analytics capabilities to Trisul Network Analytics.
☆16Updated 2 weeks ago
Alternatives and similar repositories for apps:
Users that are interested in apps are comparing it to the libraries listed below
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆75Updated last year
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 8 years ago
- A dsniff project using bro☆10Updated 9 years ago
- Some of the presentations given by me☆18Updated 3 months ago
- Python framework for manipulating bulk WHOIS data from RIRs☆20Updated 2 years ago
- We publish indicators of compromise related to our stories here. See https://blog.team-cymru.com/ for more information.☆9Updated 3 years ago
- Ready to run scripts for network analysis☆88Updated this week
- OpenFlow Honeypot☆23Updated 12 years ago
- Snort/Suricata DAQ module with DPDK patch☆11Updated 10 months ago
- JA3 TLS Fingerprint database☆78Updated 5 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆32Updated 5 months ago
- Using nDPI/openDPI to detect flow protocols from a PCAP file or live NIC. This program was modified from example in nDPI and I added a pe…☆23Updated 8 years ago
- Golang based web service to scan files with yara rules☆27Updated 7 years ago
- Automatically enumerate and fingerprint SD-WAN nodes on the internet☆50Updated 3 years ago
- encoding format, library, and utilities for passive DNS data☆26Updated 11 months ago
- This is the C version of the StratosphereLinuxIPS. It is mainly used for integration with Snort and other IDSs.☆12Updated 8 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆68Updated 9 months ago
- The ModSecurity Pcap Connector☆26Updated 9 years ago
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated 4 months ago
- Analytics for Accounting logs from Network devices☆17Updated 3 years ago
- NMap XML decoding for logstash☆28Updated 2 years ago
- Plugin for Zeek/Bro which provides http2 decoder/analyzer☆31Updated 8 months ago
- A Lua helper library for creating network protocol dissectors☆13Updated 4 years ago
- ssh key exchange layer for scapy☆13Updated 10 years ago
- IP ASN History to find ASN announcing an IP and the closest prefix announcing it at a specific date☆91Updated 5 months ago
- Artifacts of the USENIX Security 2022 paper "Spoki: Unveiling a New Wave of Scanners through a Reactive Network Telescope"☆17Updated 2 months ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- Pattern recognition for hosts, services, and content☆13Updated 2 years ago
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Updated 4 years ago
- ☆18Updated last year