BigHugger
sk Skill · mukul975

performing-network-traffic-analysis-with-zeek

Deploy Zeek (formerly Bro) as a passive network security monitor to generate structured logs of protocol metadata (HTTP, DNS, TLS, SSH, SMTP, FTP, and more), write custom detection scripts, and integrate outputs with SIEM platforms. Use when standing up continuous, high-fidelity network traffic monitoring for threat detection, anomaly identification, or forensic investigation beyond what raw PCAP analysis provides.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
inibashPythonforensicssiem-integrationthreat-detectionyamlpcapnidsidstraffic-analysisnetwork-monitoringzeek
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python