Skip to content
@corelight

Corelight, Inc.

Corelight is the most powerful network visibility solution for information security professionals, founded by the creators of open-source Zeek.

Popular repositories Loading

  1. zeek-cheatsheets zeek-cheatsheets Public

    Zeek Log Cheatsheets

    288 46

  2. community-id-spec community-id-spec Public

    An open standard for hashing network flows into identifiers, a.k.a "Community IDs".

    Python 175 25

  3. threat-hunting-guide threat-hunting-guide Public

    48 12

  4. raspi-corelight raspi-corelight Public

    Corelight@Home script

    Shell 40 5

  5. zeek-community-id zeek-community-id Public

    Zeek support for Community ID flow hashing.

    Zeek 35 18

  6. ecs-mapping ecs-mapping Public

    Mapping Corelight or Zeek data to Elastic Common Schema fields

    34 15

Repositories

Showing 10 of 142 repositories
  • zeekjs Public

    ZeekJS - Experimental JavaScript support for Zeek.

    corelight/zeekjs’s past year of commit activity
    C++ 9 BSD-3-Clause 4 3 2 Updated Feb 12, 2025
  • terraform-azure-sensor Public

    Terraform for Corelight's Azure Cloud Sensor Deployment.

    corelight/terraform-azure-sensor’s past year of commit activity
    HCL 2 MIT 0 0 0 Updated Feb 6, 2025
  • zeek-caldera-detector Public

    A Zeek based Mitre Caldera detector.

    corelight/zeek-caldera-detector’s past year of commit activity
    Zeek 0 BSD-3-Clause 0 0 0 Updated Feb 6, 2025
  • ecs-templates Public

    Corelight or Zeek Elastic Common Schema Templates

    corelight/ecs-templates’s past year of commit activity
    Python 8 BSD-3-Clause 6 2 0 Updated Feb 5, 2025
  • ecs-logstash-mappings Public

    Mapping Corelight or Zeek data to Elastic Common Schema logs

    corelight/ecs-logstash-mappings’s past year of commit activity
    12 BSD-3-Clause 6 1 0 Updated Feb 5, 2025
  • ecs-mapping Public

    Mapping Corelight or Zeek data to Elastic Common Schema fields

    corelight/ecs-mapping’s past year of commit activity
    34 BSD-3-Clause 15 1 0 Updated Feb 5, 2025
  • zeek-long-connections Public

    Zeek package for tracking long connections to report them before they have completed.

    corelight/zeek-long-connections’s past year of commit activity
    Zeek 29 BSD-3-Clause 22 3 0 Updated Jan 30, 2025
  • zeek-spicy-wireguard Public

    A Zeek Wireguard protocol analyzer based on Spicy.

    corelight/zeek-spicy-wireguard’s past year of commit activity
    Zeek 6 BSD-3-Clause 3 0 0 Updated Jan 24, 2025
  • zeek-spicy-ipsec Public

    A Zeek IPSec protocol analyzer based on Spicy.

    corelight/zeek-spicy-ipsec’s past year of commit activity
    Zeek 8 BSD-3-Clause 7 0 0 Updated Jan 24, 2025
  • zeek-spicy-openvpn Public

    A Zeek OpenVPN protocol analyzer, based on Spicy.

    corelight/zeek-spicy-openvpn’s past year of commit activity
    Zeek 8 BSD-3-Clause 3 1 0 Updated Jan 24, 2025