zeek / trace-summary
Generates network traffic summaries.
☆22Updated 2 months ago
Alternatives and similar repositories for trace-summary:
Users that are interested in trace-summary are comparing it to the libraries listed below
- ☆24Updated 5 years ago
- Potiron - Normalize, Index and Visualize Network Capture☆84Updated 5 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆30Updated 2 years ago
- ☆20Updated 3 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆35Updated last year
- ☆23Updated 4 years ago
- A RESTful API frontend for Stenographer☆55Updated 2 years ago
- A package manager for Zeek☆44Updated 2 months ago
- Specifications used in the MISP project including MISP core format☆51Updated last month
- Event Logging is an XML Schema for describing the auditable events generated by computer systems, hardware devices and access control sys…☆25Updated 8 months ago
- Deploy MISP Project software with Vagrant.☆43Updated 4 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- SystemInspector is a script to pull a majority of the security-relevant files and settings from a system.☆18Updated 6 years ago
- A Python implementation of the Community ID flow hashing standard☆23Updated last year
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN).☆105Updated last year
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆37Updated 4 months ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- Workbench: A scalable python framework for security research and development teams.☆91Updated 5 years ago
- INACTIVE - http://mzl.la/ghe-archive - Zeek Extreme Performance Tuning☆26Updated 5 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆16Updated 10 months ago
- Extract, defang, resolve names and IPs from text☆23Updated last year
- ☆11Updated 4 years ago
- Zeek package to detect Zerologon☆11Updated 3 years ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Updated 4 years ago
- PowerShell Utilities for Security Situational Awareness☆12Updated 8 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files☆44Updated 9 months ago
- Malware Classifier From Network Captures☆82Updated 8 years ago