GitHub topics: bro-ids
activecm/rita-legacy
Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.
Language: Go - Size: 15 MB - Last synced at: 4 days ago - Pushed at: 10 months ago - Stars: 2,511 - Forks: 362

alphasoc/nfr
A lightweight tool to score network traffic and flag anomalies
Language: Go - Size: 2.71 MB - Last synced at: about 1 month ago - Pushed at: 9 months ago - Stars: 123 - Forks: 19

andrewbeard/broworkshop
Materials for the BSides NoVA/Charleston 2018 Bro Workshop
Language: Dockerfile - Size: 43.1 MB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 14 - Forks: 1

0snap/zeek-cluster
Docker based Zeek IDS worker cluster
Language: Dockerfile - Size: 22.5 KB - Last synced at: about 2 months ago - Pushed at: about 6 years ago - Stars: 12 - Forks: 3

esnet/zeek_perfsonar_owamp
OWAMP protocol analyzer plugin for Bro/Zeek
Language: JavaScript - Size: 41 KB - Last synced at: about 2 months ago - Pushed at: 12 months ago - Stars: 2 - Forks: 1

clong/vagrant-ids
An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk
Language: Shell - Size: 31.3 KB - Last synced at: 13 days ago - Pushed at: almost 7 years ago - Stars: 23 - Forks: 17

mellow-hype/c2finder 📦
Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)
Language: Python - Size: 15.6 KB - Last synced at: 5 days ago - Pushed at: over 4 years ago - Stars: 5 - Forks: 2

picatz/fluentd-zeek-conf 📦
🐦 A fluentd config for zeek
Size: 1.95 KB - Last synced at: 26 days ago - Pushed at: over 6 years ago - Stars: 2 - Forks: 2

binorassocies/brostash
brostash: Linux distribution based on Debian and focusing on network security events collection
Language: Shell - Size: 51.8 KB - Last synced at: about 1 month ago - Pushed at: over 4 years ago - Stars: 34 - Forks: 8

tylabs/dovehawk
Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings
Language: Zeek - Size: 1.59 MB - Last synced at: over 1 year ago - Pushed at: almost 4 years ago - Stars: 120 - Forks: 24

al0ne/Bro-ELK
将bro日志输出到elk里面
Size: 4.88 KB - Last synced at: about 1 month ago - Pushed at: over 6 years ago - Stars: 9 - Forks: 6

blacktop/docker-bro 📦
Bro IDS Dockerfile
Language: Zeek - Size: 76.1 MB - Last synced at: over 1 year ago - Pushed at: over 5 years ago - Stars: 129 - Forks: 42

adi928/brocata
Porting Suricata to Bro signatures
Language: Python - Size: 105 KB - Last synced at: about 1 month ago - Pushed at: almost 6 years ago - Stars: 6 - Forks: 2

jodevsa/BroJS 📦
a bro client library for NodeJS
Language: JavaScript - Size: 10.7 KB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 0 - Forks: 1

MikelMoreno/ParseZeekLogs Fork of dgunter/ParseZeekLogs
Utility for parsing Bro log files into CSV or JSON format
Language: Python - Size: 90.8 KB - Last synced at: almost 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

treussart/ProbeManager_Bro 📦
Module Bro NIDS for Probe Manager
Language: Python - Size: 39 MB - Last synced at: about 2 years ago - Pushed at: almost 5 years ago - Stars: 2 - Forks: 1

elnappo/bro-log-parser
Simple logfile parser for Bro IDS
Language: Python - Size: 122 KB - Last synced at: about 1 month ago - Pushed at: over 4 years ago - Stars: 5 - Forks: 4

malice-plugins/bro
Malice Bro Plugin
Language: Go - Size: 9.77 KB - Last synced at: about 1 month ago - Pushed at: almost 8 years ago - Stars: 3 - Forks: 3

ahmadjd94/Bro-ID-Log-Analyzer
BILA: BRO IDS Logs Analyzer
Language: Python - Size: 23.6 MB - Last synced at: about 1 month ago - Pushed at: over 2 years ago - Stars: 7 - Forks: 3

jodevsa/BroRest
restful API for Bro IDS
Language: JavaScript - Size: 309 KB - Last synced at: about 1 month ago - Pushed at: almost 8 years ago - Stars: 0 - Forks: 2

binorassocies/brostash-pipeline
Brostash Logstash pipeline
Size: 25.4 KB - Last synced at: about 1 month ago - Pushed at: over 6 years ago - Stars: 6 - Forks: 2

alexisfacques/buildroot-bro
Patches for cross-compiling Bro IDS with Buildroot.
Language: Makefile - Size: 31.3 KB - Last synced at: about 2 years ago - Pushed at: almost 6 years ago - Stars: 0 - Forks: 0

binorassocies/bro-scripts
Bro IDS useful scripts
Language: Bro - Size: 16.6 KB - Last synced at: 2 months ago - Pushed at: over 7 years ago - Stars: 3 - Forks: 2

mellow-hype/dockerized-elk
ELK stack with docker-compose
Size: 1.95 KB - Last synced at: 5 days ago - Pushed at: over 7 years ago - Stars: 0 - Forks: 1
