A module for tracking and correlating abnormal DNS behavior. Detection of tunneling and C&C through connection duration and volume, request and answer size, DNS request type, and unique queries per domain.
Packet source plugin that provides native Myricom SNF v3+v4 support.
Detect credit card numbers in HTTP and SMTP with Bro.
A library for getting the "effective tld" of a domain name.
Additional seen-triggers for Bro's intelligence framework.
Detect US Social Security numbers in HTTP and SMTP with Bro.
Log the top DNS queries being requested.
A Bro package for finding new file signatures.
Page 1 of 1, showing 8 record(s) out of 8 total