Pinned Repositories
asnlookup
IP Address to ASN/prefix/owner/cc lookup server
bro_scripts
Analysis scripts for the Bro Intrusion Detection System
can-i-use-afpacket-fanout
Validate if afpacket PACKET_FANOUT_HASH is working properly
flow-indexer
Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files
netflow-indexer
A program that uses xapian to index the flat file databases used by nfdump or flow-tools
passive-dns
dns logger for passive dns collection
pynfdump
python wrapper for the nfdump cli application
python-cymruwhois
Python client for the whois.cymru.com service
splunk-scripts
some scripts for splunk
zeek-pdns
Passive DNS collection using Zeek
JustinAzoff's Repositories
JustinAzoff/zeek-pdns
Passive DNS collection using Zeek
JustinAzoff/flow-indexer
Flow-Indexer indexes flows found in chunked log files from bro,nfdump,syslog, or pcap files
JustinAzoff/can-i-use-afpacket-fanout
Validate if afpacket PACKET_FANOUT_HASH is working properly
JustinAzoff/pynfdump
python wrapper for the nfdump cli application
JustinAzoff/ssh-auth-logger
A low/zero interaction ssh authentication logging honeypot
JustinAzoff/bannerscanner
simple tcp port scanner + banner grabber
JustinAzoff/zeek-clickhouse
JustinAzoff/bro-react
react stuff
JustinAzoff/json-cut
JustinAzoff/zeek-log-filtering
A bunch of examples of zeek log filtering
JustinAzoff/zeek-jemalloc-profiling
a zeekctl plugin that helps configure MALLOC_CONF for profiling
JustinAzoff/zeek_benchmarks
JustinAzoff/bro-bench
work in progress bro benchmarking tool
JustinAzoff/suricata
Suricata git repository maintained by the OISF
JustinAzoff/wifi-wpa
wifi daemon for connecting to unencrypted networks with gokrazy
JustinAzoff/credit-card-exposure
Detect credit card exposures with Bro
JustinAzoff/CVE-2020-14882-weblogicRCE
Detection of RCE in Oracle's WebLogic Server CVE-2020-14882 / CVE-2020-14750
JustinAzoff/cve-2022-22954
JustinAzoff/go-opendecompress
like os.Open, but automatically decompress files
JustinAzoff/ipviz
Visualize zeek conn logs using a hilbert space filling curve
JustinAzoff/package-manager
A package manager for Zeek
JustinAzoff/partial_md5
Figure out if it's possible to truncate a large file so that it has a particular md5.
JustinAzoff/pcap_simplify
pcap format simplification stuff
JustinAzoff/pingback
A Zeek package to detect the Pingback malware ICMP tunnel command and control (C2) network traffic.
JustinAzoff/raspi-corelight
Corelight@Home script
JustinAzoff/ssh-auditor
The best way to scan for weak ssh passwords on your network
JustinAzoff/website
Source code for website.
JustinAzoff/wifi
Package wifi provides access to IEEE 802.11 WiFi device actions and statistics. MIT Licensed.
JustinAzoff/zeek-long-connections
Zeek package for tracking long connections to report them before they have completed.
JustinAzoff/zeek-spicy-ospf
A Zeek OSPF packet analyzer based on Spicy.