Zeek-Formatted Threat Intelligence Feeds
-
Updated
Nov 2, 2024 - Zeek
Zeek-Formatted Threat Intelligence Feeds
Repository for configuration files, scripts, code, and other information on the Watchtower Stack
Tenzir is the data pipeline engine for security teams.
Threat Hunting Toolkit is a Swiss Army knife for threat hunting, log processing, and security-focused data science
Slips, a free software behavioral Python intrusion prevention system (IDS/IPS) that uses machine learning to detect malicious behaviors in the network traffic. Stratosphere Laboratory, AIC, FEL, CVUT in Prague.
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
Logging Made Easy (LME) is a no-cost and open logging and protective monitoring solution serving all organizations.
Language server for Zeek script
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, build your taylor-made EASM tool, collect and analyse network intelligence from your sensors, and much more! Uses Nmap, Masscan, Zeek, p0f, ProjectDiscovery tools, etc.
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
ZeekJS - Experimental JavaScript support for Zeek.
Add a description, image, and links to the zeek topic page so that developers can more easily learn about it.
To associate your repository with the zeek topic, visit your repo's landing page and select "manage topics."