- Chicago, Illinois USA
Starred repositories
A set of code analysis and transform scripts to further the goals of integrations and Kibana visualizations teams
A daily updated list of newly registered domains from the past 14 and 30 days for blocking, monitoring and analysis.
Suricata rulesets for protect against phishing attack.
Using Winlogbeat v7.x script processors with the Fleet winlog integration
High-performance remote memory region mounts and migrations in user space.
Set of patches for supporting Intel(R) 10GbE PCI Express X540T2BP bypass functions on the Linux Kernel.
Detect Hostnames and enrich Zeek logs based on DHCP protocol
A collection of utilities to help with analysis on the command line.
This Zeek package provides the possibility to detect exfiltration through statistical analysis methods.
Ansible playbooks to make patching Ubuntu systems easier
A modern client-server application for the Soulseek file sharing network.
Repo for Automations and other solutions for Elastic SIEM/Security.
Bloodhound Reporting for Blue and Purple Teams
A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).
Threat Detection & Anomaly Detection rules for popular open-source components
ffscreencast - ffmpeg screencast/desktop-recording with video overlay and multi monitor support
Daemonlogger modified to use DAQ, primarily for listening on multiple interfaces
Olger, authomated cybersecurity analyst , check infrastructures and deploy solutions