zeek-ids topic

List zeek-ids repositories

dovehawk

122
Stars
24
Forks
Watchers

Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings

docker-zeek

99
Stars
31
Forks
Watchers

Zeek IDS Dockerfile

zeek_anomaly_detector

68
Stars
31
Forks
Watchers

A completely automated anomaly detector Zeek network flows files (conn.log).

zeek-flowmeter

53
Stars
16
Forks
Watchers

A Zeek script to generate features based on timing, volume and metadata for traffic classification.