Pinned Repositories
bro_vetting
Bro scripts to monitor for new hosts within a subnet range that aren't whitelisted/vetted.
capsan
Packet capture sanitizer/anonymizer.
file
Instrumented version of http://www.darwinsys.com/file/ that can be used to convert a magic database into a set of Bro signatures. One signature is created for every magic rule path that leads to a MIME type. See the "bro-signatures" branch.
sshd_audit_mux
WhitesmithsIndentStyle
Whitesmiths indentation style plugin for Sublime Text.
zeek-cryptomining
Detect cryptocurrency mining traffic with Zeek.
zeek-print-log-info
Gather and print field descriptions for all Zeek logs.
zeek-test-package
A test package for https://github.com/zeek/package-manager
ZeroMQ-SSL-State-Machine
Experiment in using OpenSSL as a state machine in order to complete a SSL/TLS handshake over a 0MQ socket.
zeek
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
jsiwek's Repositories
jsiwek/zeek-cryptomining
Detect cryptocurrency mining traffic with Zeek.
jsiwek/capsan
Packet capture sanitizer/anonymizer.
jsiwek/actor-framework
An Open Source Implementation of the Actor Model in C++
jsiwek/bro.vim
bro.vim - A simple plugin for working with the bro scripting languages.
jsiwek/linguist
Language Savant. If your repository's language is being reported incorrectly, send us a pull request!
jsiwek/package_control_channel
Default channel file for Package Control. Follow the directions at:
jsiwek/zeek-test-package
A test package for https://github.com/zeek/package-manager
jsiwek/aaalm
Generate network maps from packet captures
jsiwek/bro-community-id
Bro support for "community ID" flow hashing.
jsiwek/zeek-print-log-info
Gather and print field descriptions for all Zeek logs.
jsiwek/ace
Ace (Ajax.org Cloud9 Editor)
jsiwek/action-zkg-install
Github Action for installing a Zeek package via zkg
jsiwek/bro-http2
Plugin for Bro which provides http2 decoder/analyzer
jsiwek/bro-rita
A bro plugin for writing log data to MongoDB for use with RITA
jsiwek/ci-email-action
GitHub action to send email via SMTP on CI check_suite failure
jsiwek/cirrus-ci-test
Experimenting with Cirrus CI
jsiwek/emojifier
Set your logs on fire with Emoji-🔥!
jsiwek/git-notifier
Email change notifications for git (and GitHub).
jsiwek/install-clang
A script to create a standalone installation of clang/LLVM/libc++. Updated for Clang/LLVM 6.0.
jsiwek/ja3
JA3 is a standard for creating SSL client fingerprints in an easy to produce and shareable way.
jsiwek/oss-fuzz
OSS-Fuzz - continuous fuzzing of open source software.
jsiwek/packages
The default package source of the Zeek Package Manager
jsiwek/pygments
Pygments is a generic syntax highlighter written in Python
jsiwek/rtd-test
Experiments/testing related to Read The Docs
jsiwek/smtp-url-analysis
Extracting and analyzing URLs from Emails for phishing events
jsiwek/tcprs
TCP Retransmission and State Analyzer plugin for the Bro-IDS framework
jsiwek/vim-easymotion-vscode
Vim motions on speed!
jsiwek/vim-spicy
Syntax highlighting for BinPAC++/Spicy files (.pac2/.spicy) in Vim
jsiwek/zeek
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
jsiwek/zeek-vast
Enables Bro to communicate with VAST