Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

zeek@infosec.exchangeZ

zeek@infosec.exchange

@zeek@infosec.exchange
About
Posts
3
Topics
3
Shares
0
Groups
0
Followers
0
Following
0

View Original

Posts

Recent Best Controversial

  • ICYMI, we've been working on some new community content...
    zeek@infosec.exchangeZ zeek@infosec.exchange

    RE: https://infosec.exchange/@zeek/116534356390322075

    ICYMI, we've been working on some new community content...

    Check out the newsletter for a DNS NOTIFY investigation, dual-format logging, custom Spicy detections, and more!

    Uncategorized

  • If you're running Zeek in AWS, be sure to check out Arne's post on Traffic Mirroring, the UDP packet source plugin for VXLAN, and Kafka log forwarding.
    zeek@infosec.exchangeZ zeek@infosec.exchange

    If you're running Zeek in AWS, be sure to check out Arne's post on Traffic Mirroring, the UDP packet source plugin for VXLAN, and Kafka log forwarding.

    Link Preview Image
    Zeek: Using Zeek with AWS Traffic Mirroring and Kafka

    AWS provides a feature that allows mirroring your infrastructure's network traffic to a separate system for analysis purposes. This is called AWS Traffic Mirroring. If you'd like to use Zeek's network traffic analysis capabilities in such a cloudy environment, this blog post explains how to do so using the recently published UDP-based packet source plugin…

    favicon

    Zeek (zeek.org)

    Uncategorized

  • ICYMI: Seth's walkthrough on JA4 fingerprinting in Zeek covers JA4, JA4S, JA4H, JA4T, JA4SSH, and JA4D with installation and use cases.
    zeek@infosec.exchangeZ zeek@infosec.exchange

    ICYMI: Seth's walkthrough on JA4 fingerprinting in Zeek covers JA4, JA4S, JA4H, JA4T, JA4SSH, and JA4D with installation and use cases.

    Link Preview Image
    Zeek: How to Use JA4 Network Fingerprints in Zeek

    Learn how to use JA4 network fingerprinting in Zeek to identify client and server software, detect malware, and track behavior across encrypted connections without requiring decryption. Network fingerprinting helps identify client and server software without decrypting traffic or relying on IP addresses that rotate constantly. JA4, a family of fingerprinting methods released by FoxIO, expands…

    favicon

    Zeek (zeek.org)

    #Zeek #NetworkSecurity #OpenSource

    Uncategorized zeek networksecurity opensource
  • Login

  • Login or register to search.
  • First post
    Last post
0
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups