GitHub is home to over 31 million developers working together. Join them to grow your own development teams, manage permissions, and collaborate on projects.
Bro support for "community ID" flow hashing.
Corelight Sensor API command-line client
Bro script package to create JSON formatted logs to stream into data analysis systems.
An open standard for hashing network flows into identifiers, a.k.a "community IDs".
Bro package for tracking long connections to report them before they have completed.
Bro analyzer that detects Google's QUIC protocol
Bro Log Cheatsheets
Bro is a powerful network analysis framework that is much different from the typical IDS you may know. Official mirror of git.bro.org/bro.git .
ShellShock attack and exploit detector for Bro.
A Bro package to identify connections that are bursting (lots of data and transferring quickly).
Plugin to support libmaxminddb in Bro
Detect HTTP stalling attacks like slowloris with Bro
Add VLAN tags to all Bro logs
Add POST body excerpt to Bro's HTTP log
Note: This repository has been renamed to corelight-client.
Top DNS Measurement for Bro
Bro plugin to detect and decrypt XOR-encrypted EXEs
Dr. Watson catcher script for Bro.
Hardware description script module for Bro.
Purely signature based protocol detection for Bro