Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
Arkime is an open source, large scale, full packet capturing, indexing, and database system.
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management
The Hybrid/Multi-cloud IP Service Mesh
The tool for updating your Suricata rules.
#Awesome#A curated list of awesome things related to Suricata
Suricata rules for network anomaly detection
The default package source of the Zeek Package Manager. Wrote a package? See the README for how to get it included.
Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)
Assists music production by grouping standalone programs into sessions. Community version of "Non Session Manager".
Threat Hunting with ELK Workshop (InfoSecWorld 2017)
A package manager for Zeek