☆15Aug 11, 2019Updated 7 years ago
Alternatives and similar repositories for bro-elk-IDS
Users that are interested in bro-elk-IDS are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Scripts for Bro IDS and ELK Stack☆57Sep 2, 2015Updated 11 years ago
- Logstash configuration files for analyzing various types of logs☆24Dec 9, 2016Updated 9 years ago
- STIX2 graph widget for Jupyter notebooks, powered by stixview library☆25Jan 7, 2023Updated 3 years ago
- ☆13Feb 6, 2018Updated 8 years ago
- Lambda handler for Yelp's ElastAlert☆14Feb 1, 2019Updated 7 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Deploy Kolide's Fleet into AWS using Terraform.☆16Apr 18, 2018Updated 8 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆45Oct 31, 2018Updated 7 years ago
- JoeSandbox-Bro is a simple bro script which extracts files from your internet connection and analyzes them automatically on Joe Sandbox☆45Jun 6, 2019Updated 7 years ago
- This is a python script that can be run on each Splunk Indexer for the purpose of exporting historical bucket data (raw events + metadata…☆12Jan 31, 2024Updated 2 years ago
- Repo for the OWASP Quick Start Guide☆11Jan 13, 2015Updated 11 years ago
- Extensions for Zeek's Intelligence Framework.☆11Mar 1, 2022Updated 4 years ago
- Collection of AWS helper scripts.☆13Jan 15, 2018Updated 8 years ago
- Push-button Security Operations Center using Kubernetes☆13Oct 19, 2016Updated 9 years ago
- Bro Live! A Bro training/learning environment.☆14Jul 21, 2015Updated 11 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Network Forensics Bro scripts & pcap samples☆64Mar 11, 2014Updated 12 years ago
- Find permanent WMI event consumers on endpoints that could be used by APT actors.☆16Jun 15, 2016Updated 10 years ago
- Meeting notes☆14Apr 5, 2016Updated 10 years ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Jul 10, 2019Updated 7 years ago
- ☆15Jan 10, 2019Updated 7 years ago
- A browser extension that seamlessly integrates your yara match notifications into VirusTotal Intelligence.☆17Feb 8, 2015Updated 11 years ago
- Proof of Concept OSINT visualization☆12Dec 29, 2017Updated 8 years ago
- Elastic butler were created as a open source alternative to Elastic Stack Alerting tool☆14Jun 17, 2020Updated 6 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆53Jul 27, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆72Nov 17, 2021Updated 4 years ago
- A collection of Splunk dashboard templates.☆16Apr 18, 2019Updated 7 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆19Jul 15, 2021Updated 5 years ago
- Splunk App to assist Sysmon Threat Hunting☆37Mar 7, 2017Updated 9 years ago
- ☆84Aug 7, 2013Updated 13 years ago
- A repository of Sysmon For Linux configuration modules☆17Oct 14, 2021Updated 4 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆50Feb 11, 2014Updated 12 years ago
- Logged PS Remote Command Wrapper for Blue Team Forensics/IR☆11Apr 12, 2018Updated 8 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Nov 29, 2017Updated 8 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Debain - Docker- Kubernetes Virtuabox Packer templates.☆23Nov 6, 2021Updated 4 years ago
- A REST API server for yara event notifications. Mapping file hashes to yara signatures in Elasticsearch for easy hash lookup or finding h…☆19May 12, 2015Updated 11 years ago
- Quantum Insert Backdoor POC☆12May 21, 2017Updated 9 years ago
- Stealth is a File Integrity scanner performing its work in a stealthy way.☆12Jun 25, 2018Updated 8 years ago
- alfa shell, alfa shell download, alfa shell txt, alfashell, alfa webshell☆16Jul 24, 2022Updated 4 years ago
- Add POST body excerpt to Bro's HTTP log☆14Dec 10, 2025Updated 9 months ago
- The method and files used to generate Sysmon event logs, push them to a remote Splunk, and ingest/normalize the data for analysis.☆10Sep 28, 2020Updated 5 years ago