- Dec 02, 2024
-
-
Pavel Valach authored
-
Pavel Valach authored
First, store the credentials into the session info. If the login succeeds, only the credentials from that login session will be sent. Store all of the attempted credentials in aggregation buffer. When the aggregation window expires and the event is flushed, send the aggregated credentials to Warden.
-
Pavel Valach authored
First implementation, which uses the aggregation ID (AID) "src_ip,dst_ip" to watch all credentials used during the time window. If the login fails, the credentials are stored under the AID. The credentials are flushed from the AID cache either when the aggregation window expires, or when the login is successful - the unsuccessful credentials from the cache are then sent with the successful ones appended.
-
Pavel Valach authored
-
- Jul 10, 2024
-
-
Daniel Studený authored
Cowrie, Dionaea: in the connectors, only output IDEA events with globally routable source IPs See merge request !6
-
-
Daniel Studený authored
cowrie/wardenfiler: Replace lstrip with startswith and slicing See merge request !8
-
-
- Jun 11, 2024
-
-
Daniel Studený authored
Resolve "Dionaea exeptions" Closes #1 See merge request !7
-
Daniel Studený authored
-
- Apr 26, 2024
-
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
- Apr 25, 2024
-
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
- Apr 24, 2024
-
-
Pavel Valach authored
Dionaea: sanitize credentials See merge request !4
-
- Apr 03, 2024
-
-
Pavel Valach authored
Dionaea: Fix FTP connection category without login attempt See merge request !5
-
- Mar 26, 2024
-
-
Pavel Valach authored
-
- Mar 25, 2024
-
-
Pavel Valach authored
-
Pavel Valach authored
-
- Feb 29, 2024
-
-
Pavel Kácha authored
-
- Sep 06, 2023
-
-
Daniel Studený authored
dionaea/log_wardenfiler.py: Add option of static target IPv4 or IPv6 See merge request !3
-
- Aug 10, 2023
-
-
Pavel Valach authored
-
- Apr 20, 2023
-
-
Pavel Valach authored
dionaea: Imported changes from HaaS project See merge request !1
-
Pavel Valach authored
cowrie: Imported changes from HaaS project See merge request !2
-
- Apr 19, 2023
-
-
Pavel Valach authored
-
Pavel Valach authored
-
- Mar 13, 2023
-
-
Pavel Kácha authored
-
- Mar 10, 2023
-
-
Pavel Kácha authored
-
Pavel Kácha authored
-
Pavel Kácha authored
-
-
IDEA to STIX connector refractored -- merged into one file IdeaToStix.py and simplified some constructions, fixed some mistakes, added Desription to objects of observed data object and from IDEA Node is now filled both indices to identity object.
-