23 results for “topic:zeek-ids”
Zeek-Formatted Threat Intelligence Feeds
Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings
Zeek IDS Dockerfile
A completely automated anomaly detector Zeek network flows files (conn.log).
A Zeek script to generate features based on timing, volume and metadata for traffic classification.
No description provided.
Materials for the BSides NoVA/Charleston 2018 Bro Workshop
Docker based Zeek IDS worker cluster
Alpine Linux based Filebeat Docker Image
An operator which calls zeek to nix-ecosystem simply.
Templates for writing applications using Zeek NSM communication library Broker
A log parser for common zeek text logs in Golang.
OWAMP protocol analyzer plugin for Bro/Zeek
High-throughput Kafka → Parquet ingestion pipeline for Zeek network telemetry, written in Go.
🐦 A fluentd config for zeek
Deployment of Zeek on a Raspberry Pi 4B
Zeek IDS and Zeek-Broker Docker images
JSON TCP stream importer for RITA and AC-Hunter
DoveHawk.io Anonymized Outgoing Partial Netflow
Zeek Dashboard in Grafana with Loki Logs
This repository has customised scripts of Zeek IDS.
Hands-on cybersecurity portfolio showcasing SIEM engineering, Linux hardening, offensive security, IDS/IPS analysis, and real-world security operations projects.
🔍 Detect and analyze anomalies in system logs with a machine-learning tool, enhancing security through automated insights and visualizations.