Skip to content

Entry

Zeek

Appears in 6 awesome lists

(formerly Bro) is an open source software platform that provides compact, high-fidelity transaction logs, file content, and fully customized output to analysts, from the smallest home office to the largest, fastest research and commercial networks. From the FAQ: "Zeek provides a comprehensive…

Open zeek.org

Found in these lists

Awesome CTF

Section: Networking · An open-source network security monitor.

StaleScore 58

Awesome Cybersecurity Blue Team

Section: Network Security Monitoring (NSM) · Powerful network analysis framework focused on security monitoring, formerly known as Bro.

StaleScore 53

Awesome Cybersecurity Blue Team - CN

Section: 网络安全监控(NSM) · 一个强大的网络分析框架,专注于安全监控,以前称为Bro

StaleScore 47

Awesome Pcaptools

Section: Traffic Analysis/Inspection · (formerly Bro) is an open source software platform that provides compact, high-fidelity transaction logs, file content, and fully customized output to analysts, from the smallest home office to the largest, fastest research and commercial networks. From the FAQ: "Zeek provides a comprehensive…

SlowScore 60

Awesome Security

Section: IDS / IPS / Host IDS / Host IPS · Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

SlowScore 70

Awesome Privacy

Section: Self-Hosted Network Security · Detect if you have a malware-infected computer on your network, and powerful network analysis framework and monitor.

FreshScore 91

Wireshark

Wireshark is a free and open-source packet analyzer. It is used for network troubleshooting, analysis, software and communications protocol development, and education. Wireshark is very similar to tcpdump, but has a graphical front-end, plus some integrated sorting and filtering options.

In 20 listsDetails

Snort

Snort is a free and open source network intrusion prevention system (NIPS) and network intrusion detection system (NIDS)created by Martin Roesch in 1998. Snort is now developed by Sourcefire, of which Roesch is the founder and CTO. In 2009, Snort entered InfoWorld's Open Source Hall of Fame as one…

In 9 listsDetails

Nmap

A free, open-source network scanner used for discovering hosts, services, and vulnerabilities on computer networks through advanced port scanning and OS detection techniques.

In 10 listsDetails

masscan

TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes..

In 7 listsDetails

Maltrail

A malicious traffic detection system, utilizing publicly available (black)lists containing malicious and/or generally suspicious trails and featuring an reporting and analysis interface.

In 5 listsDetails

Stenographer

Packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. It stores as much history as it possible, managing disk usage, and deleting when disk limits are hit. It's ideal for capturing the traffic just before and during…

In 5 listsDetails

Nipe

Script to redirect all traffic from the machine to the Tor network.

In 4 lists

Tsunami

A general purpose network security scanner with an extensible plugin system for detecting high severity RCE-like vulnerabilities with high confidence. Custom detectors for finding vulnerabilities (e.g. open APIs) can be added.

In 3 lists