Packages
By ukncsc
Plugin that enables parsing of the IKEv2 protocol
By amzn
Plugin that enables parsing of the Profinet protocol
By 0xxon
Identify certificates potentially affected by CVE-2017-15361
By amzn
Plugin that enables parsing of the S7 protocol
By amzn
Plugin that enables parsing of the Tabular Data Stream (TDS) protocol
By 0xxon
A PostgreSQL reader and writer for Zeek.
By jsiwek
Gathers and prints field descriptions for all Zeek logs.
The default output format is CSV files.
By corelight
Detects the Google QUIC (GQUIC) protocol and adds "gquic"
to conn.log's "service" field.
By cybera
Sniffpass will alert on cleartext passwords discovered in HTTP POST requests
By corelight
A Facefish rootkit detector, based on Spicy.
By corelight
An IPSec Zeek protocol analyzer based on Spicy.
By corelight
A Zeek OpenVPN protocol analyzer, based on Spicy.
By corelight
A Zeek OSPF packet analyzer, based on Spicy.
By corelight
A Zeek STUN protocol analyzer based on Spicy.
By corelight
A Wireguard VPN protocol analyzer, based on Spicy.
By dopheide
This script replaces the default ssh/interesting-hostnames and reduces the number of asyncrhonous when() calls made by Zeek.
By corelight
A Zeek based STRRAT malware detector.
By 0xxon
Two-dimensional buckets for sumstats (count occurences per $str).
By tenzir
This package is the official Zeek integration for Tenzir.
Page 13 of 14, showing 20 record(s) out of 269 total