Skip to content

collection of bro and bash scripts that when run from the same directory on Linux distro with bro installed, will pull information such as active HTTP conns, FTP conns, etc. It also carves various types of files at the same time. They can be run against snort logs or pcaps

Notifications You must be signed in to change notification settings

slacker007/Bro-NetworkSecurityMonitoring

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

7 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Bro-NetworkSecurityMonitoring

This is a collection of Bro and bash scripts that when run from the same directory on a Linux distro with bro installed; will pull information such as active HTTP conns, FTP conns, DNS Request/Responses, And a live(-20 seconds) feed for files transmitted. It also carves the various types of files at the same time. They can be run against snort logs or pcaps. Each section is displayed on the terminal with each being represented by different colors. Written by @realSlacker007. If there are any questions or suggestions to add to this script send an email or leave a comment at [email protected].

About

collection of bro and bash scripts that when run from the same directory on Linux distro with bro installed, will pull information such as active HTTP conns, FTP conns, etc. It also carves various types of files at the same time. They can be run against snort logs or pcaps

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published