bash_cata

Alert processor

Automates processing of network alerts from Suricata and adds IP addresses to MikroTik address lists.

A simple script that processes the generated Suricata eve-log in real time.

GitHub

9 stars
1 watching
1 forks
Language: Shell
last commit: over 2 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
pevma/massdeploysuricataAutomates the deployment and updating of Suricata network intrusion detection system software.9
stamusnetworks/kts6Templates for Kibana 6 to visualize and analyze Suricata threat intelligence data24
sebdraven/iocmiteAutomates importing threat intelligence data into Suricata's surveillance system37
jasonish/experimental-suricata-trainingA shell-based training environment for Suricata intrusion detection and analysis6
withsecurelabs/linuxcatscaleAutomates incident response collection and processing on Linux hosts.274
dcso/feverA fast and extensible system for processing JSON events from security monitoring tools51
stamusnetworks/ktsCustomizable dashboards and visualizations for security monitoring and analysis using Suricata IDPS and the ELK stack.33
eschava/psmqttA utility that collects and reports system metrics to an MQTT broker.159
vp777/metahttpAutomates scanning of HTTP resources in a target network using XML External Entity (XXE) attacks37
center-sun/suricata-kafka-outputProvides a Suricata output to Kafka using the Eve plugin14
ditekshen/detectionDetects malicious network and host activity using Yara, Snort, and ClamAV signatures.213
jasonish/docker-suricataA Docker image for running Suricata, a network security system269
certego/pcapmonkeyAn analysis tool for packet capture files using Suricata and Zeek145
stamusnetworks/suricata-language-serverAn implementation of the Language Server Protocol for Suricata signatures, adding syntax check and auto-completion to editors.66
jandelgado/rabtapA tool for inspecting and manipulating RabbitMQ message flows265