Stephen Hosom (hosom)

hosom

Geek Repo

Company:@github

Twitter:@0xhosom

Github PK Tool:Github PK Tool

Stephen Hosom's repositories

file-extraction

Extract files from network traffic with Zeek.

Language:ZeekLicense:BSD-3-ClauseStargazers:100Issues:13Issues:12

bro-otx

Integrate Zeek with Alienvault OTX

Language:PythonLicense:BSD-3-ClauseStargazers:24Issues:2Issues:5

svalinn

Windows Password Filter

Language:C++License:BSD-3-ClauseStargazers:5Issues:1Issues:0

bro-ja3

ja3 ssl fingerprinting for bro

Language:BroLicense:BSD-3-ClauseStargazers:2Issues:1Issues:1

bro-oui

Add an OUI lookup to Bro IDS.

Language:BroLicense:BSD-3-ClauseStargazers:1Issues:1Issues:0

dummy-connections

Create connection records without having real connections.

Language:BroLicense:BSD-3-ClauseStargazers:1Issues:1Issues:0

log-filters

Common log filters for Zeek IDS

Language:ZeekLicense:BSD-3-ClauseStargazers:1Issues:1Issues:0

opencanary

Modular and decentralised honeypot

Language:PythonLicense:BSD-3-ClauseStargazers:1Issues:1Issues:0

bro-cron

Schedule shell commands with Bro.

Language:BroLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0

bro-environment

Learn and document your environment with Bro IDS.

Language:BroLicense:BSD-3-ClauseStargazers:0Issues:2Issues:0

bro-packages

Bro packages. Possibly unstable. I release here before anywhere else.

License:BSD-3-ClauseStargazers:0Issues:1Issues:0

broctl

Tool for managing Bro deployments.

Language:PythonLicense:NOASSERTIONStargazers:0Issues:1Issues:0

brointelutils

Utilities for Bro Intel Sources

Language:GoStargazers:0Issues:1Issues:0

broker

Bro's Messaging Library

Language:C++License:NOASSERTIONStargazers:0Issues:1Issues:0

cbapi-python

Carbon Black API - Python language bindings

Language:PythonLicense:NOASSERTIONStargazers:0Issues:1Issues:0

docker-bro

Bro IDS Dockerfile

Language:BroLicense:MITStargazers:0Issues:1Issues:0

heimdall

very simple blocklist daemon

License:BSD-3-ClauseStargazers:0Issues:1Issues:0

known-dhcp-nets

Log DHCP networks seen assigned by DHCP servers

Language:BroLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0

nrol-39-logo

A vector PDF of the official mission logo of NROL-39

Stargazers:0Issues:1Issues:0

ntdedupe

napatech based packet deduplication tool

Language:C++License:BSD-3-ClauseStargazers:0Issues:1Issues:0

octokit.rb

Ruby toolkit for the GitHub API

Language:RubyLicense:MITStargazers:0Issues:0Issues:0

packages

The default package source of the Zeek Package Manager

Stargazers:0Issues:1Issues:0

recently-compiled-pes

Detect PE files with a recent compile time.

Language:BroLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0

stenographer

Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. Discussion/announcements at stenographer@googlegroups.com

Language:GoLicense:Apache-2.0Stargazers:0Issues:1Issues:0

ufbuilder

Shell utilities to generate self extracting installers for the Splunk Universal Forwarder.

Language:ShellLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0

vault-ruby

The official Ruby client for HashiCorp's Vault

Language:RubyLicense:MPL-2.0Stargazers:0Issues:0Issues:0

vscode_notes_template

Template repository for building notebooks in vscode

License:BSD-3-ClauseStargazers:0Issues:2Issues:0

windows-event-forwarding

A repository for using windows event forwarding for incident detection and response

Language:RoffLicense:NOASSERTIONStargazers:0Issues:1Issues:0

WindowsEventForwarding

Documentation and files for Windows Event Forwarding

Language:RoffLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0

zeek

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Language:BroLicense:NOASSERTIONStargazers:0Issues:1Issues:0