BRO/Zeek IDS content pack contains pipeline rules, a stream, a dashboard displaying interesting activity, and a syslog tcp input to capture and index BRO/Zeek logs coming from a remote sensor.
-
Updated
Apr 12, 2020
BRO/Zeek IDS content pack contains pipeline rules, a stream, a dashboard displaying interesting activity, and a syslog tcp input to capture and index BRO/Zeek logs coming from a remote sensor.
Collection of PatternDB files to parse Ubiquiti Unifi events into Security Onion's Syslog-NG and ELSA
This project aims to enhance intrusion detection using Security Onion by integrating machine learning models for improved alert prioritization.
Test your IDS with a simple python2.7 SCAPY tool.
Security Onion Packet Capture Download scripts
Presenting a guide and systematic methodology for implementing securityonion / ELK elastic search stack. Checklists, Samples, Tips, and Tricks
YARA signature | YARA rule for Detecting Voldemort Malware
A Security Onion deployment project for intrusion detection and log analysis. Includes standalone, pfSense, internal, and cloud scenarios with Suricata, Zeek, Wazuh, and ELK stack integration.
Standalone Security Onion Setup + Network Simulation using Two Devices
Simulated cybersecurity homelab using a 7-VM setup including a defense and an attack box
Add a description, image, and links to the security-onion topic page so that developers can more easily learn about it.
To associate your repository with the security-onion topic, visit your repo's landing page and select "manage topics."