Top 47 Zeek open source projects

1. Ivre
Network recon framework, published by @cea-sec & @ANSSI-FR. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, collect and analyse network intelligence from your sensors, and much more!
2. Zeek
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
3. zeek-plugin-tds
Zeek network security monitor plugin that enables parsing of the Tabular Data Stream (TDS) protocol
4. Zeek-Network-Security-Monitor
A Zeek Network Security Monitor tutorial that will cover the basics of creating a Zeek instance on your network in addition to all of the necessary hardware and setup and finally provide some examples of how you can use the power of Zeek to have absolute control over your network.
5. bro-scripts
No description, website, or topics provided.
✭ 16
Zeek
6. bro-scripts
Various Bro scripts
✭ 38
Zeek
7. http-stalling-detector
Detect HTTP stalling attacks like slowloris with Bro
8. bro-debian-elasticsearch
bro on debian with elasticsearch support
9. BroIDS Unicorn
simple plugin to detect shellcode on Bro IDS with Unicorn
10. Malcolm
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files) and Zeek logs.
11. bro-phishing
Detect Phishing with Bro IDS
✭ 19
Zeek
13. zeek-plugin-profinet
Zeek network security monitor plugin that enables parsing of the Profinet protocol
14. bro scripts
A collection of bro_scripts and signatures
✭ 27
Zeek
15. brospects
Experimental Bro scripts with good prospects for the official bro-scripts repository.
✭ 20
Zeek
16. kyd
DHCP Fingerprinting
✭ 23
pythonZeek
17. decanter
No description, website, or topics provided.
✭ 16
pythonZeek
18. bro-domain-generation
Bro script module for detecting malware using domain generation algorithms.
✭ 14
Zeek
19. cve-2020-0601
Zeek package to detect CVE-2020-0601
20. sniffer
流量抓取服务
✭ 19
pythonZeek
21. KafkaLogger
Logging plugin to bro to send logs to a Kafka broker
22. smtp-url-analysis
Extracting and analyzing URLs from Emails for phishing events
✭ 18
Zeek
23. anomalous-dns
A set of zeek scripts providing a module for tracking and correlating abnormal DNS behavior.
✭ 25
Zeek
24. zeek-training
Zeek Training Materials/Products
✭ 27
Zeek
25. zeek-tsv-http-plugin
A Zeek plugin to POST logs over HTTP.
27. bro-simple-scan
No description, website, or topics provided.
✭ 15
Zeek
29. bro-scripts
Various Bro scripts
✭ 96
Zeek
30. json-streaming-logs
Bro script package to create JSON formatted logs to stream into data analysis systems.
✭ 26
Zeek
31. BotFlex
BotFlex is an open source tool or bot detection and analysis
✭ 56
Zeekshell
32. beginner brogramming
scripts to help beginners program in Bro
✭ 21
Zeek
33. ivre
Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, collect and analyse network intelligence from your sensors, and much more!
34. ansible-zeek
setup zeek, previously Bro IDS
36. zeek-plugin-s7comm
Zeek network security monitor plugin that enables parsing of the S7 protocol
37. brocon-15
brocon-15 scripts
✭ 13
Zeek
38. zeek-junk-drawer
Zeek Junk Drawer - Just some scripts and a place to put them
✭ 27
Zeek
40. MegaDev
Bro IDS + ELK Stack to detect and block data exfiltration
42. zeekctl
Tool for managing Zeek deployments.
43. Threat-Intelligence-Data
Snort_rules detection bad actors.
✭ 27
Zeek
44. tcpdump2gureKDDCup99
Creates a KDDCup99 format databse from traffic sniffed with tcpdump
✭ 29
Zeekc
45. bro.vim
bro.vim - A simple plugin for working with the bro scripting languages.
46. CnC-detection
Detecting PowerShell Empire, Metasploit Meterpreter and Cobalt Strike agents by payload size sequence analysis and host correlation
47. zeek-netcontrol
Connectors for the Zeek NetControl framework
1-47 of 47 Zeek projects