Managed Projects

prads

  Analyzed 12 months ago

Prads is a `Passive Real-time Asset Detection System`. It passively listen to network traffic and gathers information on hosts and services it sees on the network. This information can be used to map your network, letting you know what services and hosts are alive/used, or can be used together with ... [More] your favorite IDS/IPS setup for "event to host/service" correlation. [Less]

12.5K lines of code

0 current contributors

over 4 years since last commit

3 users on Open Hub

Activity Not Available
0.0
 
I Use This

cxtracker

  Analyzed 12 months ago

cxtracker - (Connection Tracker) is a passive network connection tracker for profiling, history, auditing and network discovery. It handles IPv6 out of the box. It can also be used as an replacement for sancp in the sguil setup. It is also used in fpcgui (Full packet Capture GUI) for collecting ... [More] metadata from sessions, for easy lookup in a db for later to retrive it from pcapfiles. [Less]

3.75K lines of code

0 current contributors

over 7 years since last commit

2 users on Open Hub

Activity Not Available
0.0
 
I Use This

fpcgui

  Analyzed 12 months ago

PCGUI is a frontend to handle packet captures. Its aim is for Network Security Analysts who wants to have a non-commercial cheap storage for doing Network Forensics. It can uses daemonlogger/tcpdump/sancp for packet capturing and cxtracker for connection profiling. daemonlogger/tcpdump/sancp ... [More] is responsible for dumping pcaps to disk. cxtracker/sancp indexes connections, making them searchable. LAMP is used for GUI. to search up connections and carving out relevant pcaps. [Less]

1.47K lines of code

0 current contributors

almost 15 years since last commit

2 users on Open Hub

Activity Not Available
0.0
 
I Use This

sidfarmer

  Analyzed 12 months ago

sidfarmer is a way to manage Snort or Suricata IDS/IPS engines. All rules and config settings for an engine are stored in a mysql backend and via the webgui you can edit rulesets/policies for each engine or group of engines and push out new settings, stop/start/restart engines etc.

396 lines of code

0 current contributors

almost 15 years since last commit

1 users on Open Hub

Activity Not Available
0.0
 
I Use This

sidrule

  Analyzed 12 months ago

sidrule is a bash-script to manage Snort/Emerging Threats/Suricata IDS-rules based on its sid or msg, classtype or policy.

218 lines of code

0 current contributors

almost 15 years since last commit

1 users on Open Hub

Activity Not Available
0.0
 
I Use This