trisulnsm / bitmaul
A Lua helper library for creating network protocol dissectors
☆13Updated 4 years ago
Alternatives and similar repositories for bitmaul
Users that are interested in bitmaul are comparing it to the libraries listed below
Sorting:
- flexible, structured event replication format for DNS servers (Protocol Buffers schema)☆24Updated 3 months ago
- Engine for capturing, parsing and replaying DNS☆58Updated last month
- Kafka connector to sync Zed lakes to and from Kafka topics☆18Updated 11 months ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- Dynamic Outbound Firewall Authorizer☆22Updated 3 years ago
- Simple streaming pre-processor and enrichment tool for structured logs.☆11Updated 2 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆52Updated last month
- A Spicy protocol analyzer for WireGuard☆29Updated 4 years ago
- Architecture - design and implementation of the D4 project architecture☆16Updated 3 years ago
- High performance time ordered PCAP merging utility☆23Updated 2 years ago
- Code for the paper "Scanning the Internet for Liveness"☆10Updated 7 years ago
- suricata eve.json parser in Go☆15Updated 6 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- Python framework for manipulating bulk WHOIS data from RIRs☆21Updated 3 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆88Updated last year
- Go implementation of the Community ID flow hashing standard☆20Updated last month
- 🌦️ Domain Ranker☆15Updated 5 years ago
- Pure Python netflow and DNS correlation, with reusable Frame Streams, DnsTap and Protobuf implementations☆15Updated last month
- Network Entity Reputation Database☆34Updated 2 months ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆16Updated last year
- DNS packet generator☆46Updated 9 months ago
- Pattern recognition for hosts, services, and content☆13Updated 2 years ago
- We publish indicators of compromise related to our stories here. See https://blog.team-cymru.com/ for more information.☆9Updated 3 years ago
- Expand CIDRs or wrangle a list of IPs back to its smallest CIDR blocks possible☆10Updated 5 years ago
- Extract, defang, resolve names and IPs from text☆23Updated last year
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆77Updated last year
- Detect Phishing fetching Certificate Transparency Logs☆20Updated 4 years ago
- Import and display Masscan data☆35Updated last month
- A low-cost Certificate Transparency log for deployment in the cloud.☆38Updated 7 months ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago