trisulnsm / bitmaul
A Lua helper library for creating network protocol dissectors
☆13Updated 4 years ago
Alternatives and similar repositories for bitmaul:
Users that are interested in bitmaul are comparing it to the libraries listed below
- flexible, structured event replication format for DNS servers (Protocol Buffers schema)☆24Updated 2 months ago
- Engine for capturing, parsing and replaying DNS☆58Updated last week
- Kafka connector to sync Zed lakes to and from Kafka topics☆18Updated 10 months ago
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆87Updated 11 months ago
- suricata eve.json parser in Go☆15Updated 5 years ago
- Dynamic Outbound Firewall Authorizer☆22Updated 3 years ago
- Tiny nDPI based deep packet inspection daemons / toolkit.☆77Updated last week
- Architecture - design and implementation of the D4 project architecture☆16Updated 3 years ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- Measuring Internet AS dependency☆12Updated 2 years ago
- E4's C2 server☆20Updated 4 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 11 months ago
- Meer is a "spooler" for Suricata / Sagan.☆29Updated last year
- High performance time ordered PCAP merging utility☆22Updated 2 years ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆76Updated last year
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆51Updated last week
- The TCP Session Replay Tool☆26Updated 13 years ago
- Argus clients program repo☆22Updated 2 weeks ago
- Generate network maps from packet captures☆31Updated 5 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- ☆13Updated 3 years ago
- Network Entity Reputation Database☆34Updated 2 months ago
- JA3 TLS Fingerprint database☆79Updated 5 years ago
- multitenant ModSecurity compatible WAF engine from Edgio☆89Updated 4 months ago
- Go implementation of the Community ID flow hashing standard☆20Updated last week
- Extract TLS certificates from pcap files or network interfaces, fingerprint TLS client/server interactions with ja3/ja3s☆37Updated 5 years ago
- Recog-Go: Pattern Recognition using Rapid7 Recog☆107Updated last year
- A high performance, pass-through TCP-proxy with delayed binding (~ 1 million cps with 3 cores)☆33Updated last year