26 results found Sort:

1.2k
6.2k
other
353
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
Created 2012-07-06
16,621 commits to master branch, last one 3 days ago
629
3.4k
gpl-3.0
171
Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, collect and analyse network intelligenc...
Created 2014-09-12
3,955 commits to master branch, last one 2 days ago
253
1.9k
apache-2.0
13
:star: :star: Distributed tcpdump for cloud native environments :star: :star:
Created 2022-03-25
61 commits to main branch, last one 8 months ago
302
1.8k
other
54
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
Created 2019-05-13
4,092 commits to main branch, last one 2 days ago
59
763
other
18
Logging Made Easy (LME) is a no-cost and open logging and protective monitoring solution serving all organizations.
Created 2023-10-06
98 commits to main branch, last one 29 days ago
Slips, a free software behavioral Python intrusion prevention system (IDS/IPS) that uses machine learning to detect malicious behaviors in the network traffic. Stratosphere Laboratory, AIC, FEL, CVUT ...
Created 2015-12-08
11,359 commits to master branch, last one 15 days ago
85
623
bsd-3-clause
35
Open source security data pipelines.
Created 2010-09-23
21,140 commits to main branch, last one 2 days ago
109
422
mit
39
Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark
Created 2017-03-22
572 commits to main branch, last one 5 months ago
77
394
mit
18
This project is a SIEM with SIRP and Threat Intel, all in one.
Created 2021-05-11
636 commits to master branch, last one 5 months ago
Zeek-Formatted Threat Intelligence Feeds
Created 2020-08-20
141 commits to master branch, last one 9 hours ago
16
256
bsd-3-clause
26
🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.
This repository has been archived (exclude archived)
Created 2019-01-31
857 commits to main branch, last one 2 years ago
36
237
other
22
C++ parser generator for dissecting protocols & files.
Created 2020-04-06
3,432 commits to main branch, last one a day ago
DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat detection
Created 2019-06-17
1,370 commits to master branch, last one 2 years ago
24
122
mit
9
Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings
Created 2018-08-24
57 commits to master branch, last one 2 years ago
19
119
mit
10
Threat Hunting Toolkit is a Swiss Army knife for threat hunting, log processing, and security-focused data science
Created 2021-03-17
403 commits to main branch, last one 28 days ago
8
72
bsd-3-clause
7
Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)
Created 2021-03-27
1,418 commits to main branch, last one 14 hours ago
A completely automated anomaly detector Zeek network flows files (conn.log).
Created 2019-08-03
82 commits to main branch, last one 11 months ago
11
67
unknown
7
Collection of scripts, files, and tips to create and maintain networks, hack, and more!
Created 2019-02-20
169 commits to master branch, last one 3 years ago
28
64
other
20
Zeek's Messaging Library
Created 2014-07-09
1,995 commits to master branch, last one 4 days ago
A Zeek Network Security Monitor tutorial that will cover the basics of creating a Zeek instance on your network in addition to all of the necessary hardware and setup and finally provide some examples...
Created 2020-02-07
25 commits to main branch, last one about a year ago
Open source endpoint agent providing host information to Zeek. [v2]
Created 2021-12-06
333 commits to main branch, last one 3 months ago
60
48
other
20
Documentation for Zeek
Created 2019-01-17
1,058 commits to master branch, last one 8 days ago
15
45
bsd-3-clause
11
Zeek network security monitor plugin that enables parsing of the Ethernet/IP and Common Industrial Protocol standards
Created 2019-10-04
25 commits to master branch, last one 3 months ago
Run zeek with zeekctl in docker
Created 2020-05-21
52 commits to master branch, last one about a year ago
15
43
apache-2.0
10
A Zeek log writer plugin that publishes to Kafka.
Created 2020-12-31
80 commits to main branch, last one 2 months ago
This repository contains Splunk queries to hunt some anomalies
Created 2022-04-08
65 commits to main branch, last one about a year ago