Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
#

zeek

Here are 175 public repositories matching this topic...

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

  • UpdatedMar 16, 2025
  • C++

Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, build your taylor-made EASM tool, collect and analyse network intelligence from your sensors, and much more! Uses Nmap, Masscan, Zeek, p0f, ProjectDiscovery tools, etc.

  • UpdatedMar 12, 2025
  • Python

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.

  • UpdatedMar 11, 2025
  • Python

Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations secure their infrastructure.

  • UpdatedMar 13, 2025
  • Python

Slips, a free software behavioral Python intrusion prevention system (IDS/IPS) that uses machine learning to detect malicious behaviors in the network traffic. Stratosphere Laboratory, AIC, FEL, CVUT in Prague.

  • UpdatedMar 17, 2025
  • Python
tenzir

Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark

  • UpdatedJan 16, 2024
  • Jupyter Notebook

This project is a SIEM with SIRP and Threat Intel, all in one.

  • UpdatedNov 20, 2024
  • Shell
Malcolm

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.

  • UpdatedMar 6, 2025
  • Python

Zeek-Formatted Threat Intelligence Feeds

  • UpdatedMar 17, 2025
  • Zeek

🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.

  • UpdatedMar 17, 2023
  • Python

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

  • UpdatedMar 13, 2025
  • Go
spicy

C++ parser generator for dissecting protocols & files.

  • UpdatedMar 12, 2025
  • C++

DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat detection

  • UpdatedMay 23, 2023
  • Python

Threat Hunting Toolkit is a Swiss Army knife for threat hunting, log processing, and security-focused data science

  • UpdatedMar 1, 2025
  • Shell

Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings

  • UpdatedJul 12, 2021
  • Zeek

Zeek IDS Dockerfile

  • UpdatedDec 5, 2022
  • Zeek

Extract files from network traffic with Zeek.

  • UpdatedMar 17, 2020
  • Zeek

Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)

  • UpdatedOct 15, 2024
  • Go

Improve this page

Add a description, image, and links to thezeek topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with thezeek topic, visit your repo's landing page and select "manage topics."

Learn more


[8]ページ先頭

©2009-2025 Movatter.jp