trisulnsm / bitmaulLinks
A Lua helper library for creating network protocol dissectors
☆13Updated 4 years ago
Alternatives and similar repositories for bitmaul
Users that are interested in bitmaul are comparing it to the libraries listed below
Sorting:
- flexible, structured event replication format for DNS servers (Protocol Buffers schema)☆25Updated 4 months ago
- Kafka connector to sync Zed lakes to and from Kafka topics☆18Updated last year
- Engine for capturing, parsing and replaying DNS☆58Updated 2 months ago
- High performance time ordered PCAP merging utility☆23Updated 3 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- JA3 TLS Fingerprint database☆79Updated 5 years ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- suricata eve.json parser in Go☆15Updated 6 years ago
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆53Updated 2 months ago
- Schema-free, document-oriented streaming database that optimized for monitoring network traffic in real-time☆39Updated 3 years ago
- This repo aims to offer a packet flow tracer based on bpf☆13Updated 5 years ago
- Recog-Go: Pattern Recognition using Rapid7 Recog☆111Updated last year
- Architecture - design and implementation of the D4 project architecture☆16Updated 4 years ago
- lightweight CVE search☆21Updated 2 years ago
- Extract TLS certificates from pcap files or network interfaces, fingerprint TLS client/server interactions with ja3/ja3s☆37Updated 5 years ago
- Go implementation of the Community ID flow hashing standard☆20Updated 2 months ago
- Simple streaming pre-processor and enrichment tool for structured logs.☆11Updated 2 years ago
- Argus clients program repo☆22Updated 2 weeks ago
- reference dnstap decoding utility☆20Updated 2 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- Dynamic Outbound Firewall Authorizer☆22Updated 3 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 9 months ago
- Entropy clustering of IPv6 networks, see https://ipv6hitlist.github.io/☆13Updated 6 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆89Updated last year
- A library implementing a generic SQL like query language.☆20Updated last week
- go-audit is an alternative to the auditd daemon that ships with many distros☆16Updated 6 years ago
- ☆13Updated 3 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆16Updated last year
- Meer is a "spooler" for Suricata / Sagan.☆30Updated 2 years ago