pre-commit hooks specification for zeek-format
-
Updated
Jan 18, 2023 - Python
pre-commit hooks specification for zeek-format
Scan extracted file from Zeek with Yara rules and get statistical analysis for matching files. Optionally, simulate matching malicious files with Picus.
Generate a CMDB based on traffic capture data.
Repository of scripts to add AlienVault's OTX intel feed to Zeek and Security Onion 2
An online, deployable machine learning network intrusion detection system for Zeek.
Ansible role that installs Zeek (formerly Bro) and configures it to run as a non-root user
Templates for writing applications using Zeek NSM communication library Broker
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
An automated Pcap Analysis tool which produces an interactive graph with details like ISP info and maliciousness of the actor/IP
A tool set to work with our Stratosphere Laboratory cybersecurity datasets.
Lambda Function for Serverless pDNS and Flow Collection
DEteCtion of Anomalous outbouNd HTTP TRaffic by Passive Application Fingerprinting -- fork of original scientific paper code
Add a description, image, and links to the zeek topic page so that developers can more easily learn about it.
To associate your repository with the zeek topic, visit your repo's landing page and select "manage topics."