Pinned Repositories
bloom-filter-library
A simple C library implementing Bloom filter.
Filebeat-module-for-Postfix
Config example and Filebeat module for Postfix based on JPCERT/CC report. https://www.jpcert.or.jp/research/apt-loganalysis.html
Filebeat-module-for-Squid
Config example and Filebeat module for Squid based on JPCERT/CC report. https://www.jpcert.or.jp/research/apt-loganalysis.html
log-analysis-training
ログ分析トレーニング用コンテンツ
monkey-shell
rockhopper-vpn
IPsec-based VPN software for linux, implemented in user space. IKEv1, IKEv2, Ethernet Over IPsec and DMVPN are supported.
sysmon-winlogbeat-config
Elasticsearch config examples (template and ingest/pipeline) for Sysmon + Winlogbeat.
tshark-filter
A tshark wrapper tool to filter and/or aggregate packet data in PCAP, generate ECS fields and output them in JSON format. As outputs, currently Stdout and Elasticsearch are supported.
Winlogbeat-javascript-processor-example
Example javascript modules for Winlogbeat's script processor (HelloWorld module and Decode module for PowerShell -EncodedCommand args [Base64])
rhpenguin's Repositories
rhpenguin/rockhopper-vpn
IPsec-based VPN software for linux, implemented in user space. IKEv1, IKEv2, Ethernet Over IPsec and DMVPN are supported.
rhpenguin/Filebeat-module-for-Postfix
Config example and Filebeat module for Postfix based on JPCERT/CC report. https://www.jpcert.or.jp/research/apt-loganalysis.html
rhpenguin/tshark-filter
A tshark wrapper tool to filter and/or aggregate packet data in PCAP, generate ECS fields and output them in JSON format. As outputs, currently Stdout and Elasticsearch are supported.
rhpenguin/Filebeat-module-for-Squid
Config example and Filebeat module for Squid based on JPCERT/CC report. https://www.jpcert.or.jp/research/apt-loganalysis.html
rhpenguin/sysmon-winlogbeat-config
Elasticsearch config examples (template and ingest/pipeline) for Sysmon + Winlogbeat.
rhpenguin/bloom-filter-library
A simple C library implementing Bloom filter.
rhpenguin/log-analysis-training
ログ分析トレーニング用コンテンツ
rhpenguin/monkey-shell
rhpenguin/Winlogbeat-javascript-processor-example
Example javascript modules for Winlogbeat's script processor (HelloWorld module and Decode module for PowerShell -EncodedCommand args [Base64])