Section: .. / UNIX / loggers /
| /// File Name: |
ttyrpld-2.52.tar.bz2 |
Description:
|
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
| | Author: | Jan Engelhardt | | Homepage: | http://ttyrpld.sourceforge.net/ | | Changes: | Updated kernel components for Linux 2.6.27 and updated userspace code for libHX 1.25. | | File Size: | 184626 | | Last Modified: | Sep 8 11:28:55 2008 |
| MD5 Checksum: | 322674047f27652702ba35a196ca3c74 |
|
| /// File Name: |
ttyrpld-2.51.tar.bz2 |
Description:
|
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
| | Author: | Jan Engelhardt | | Homepage: | http://ttyrpld.sourceforge.net/ | | Changes: | Updated rpldhk and rpldev for Linux 2.6.25, OpenBSD 4.3, FreeBSD 7.0, NetBSD 4.0. | | File Size: | 183529 | | Last Modified: | May 19 14:52:33 2008 |
| MD5 Checksum: | cc635d7f709c96115111b64185eaccf4 |
|
| /// File Name: |
tenshi-0.10.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | Multiple bug fixes and some improvements. | | File Size: | 26131 | | Last Modified: | Mar 14 13:29:09 2008 |
| MD5 Checksum: | cc6abbcd1bf563fa31771b7d4b05fe65 |
|
| /// File Name: |
os-sim-0.9.9.tar.gz |
Description:
|
Os-sim attempts to unify network monitoring, security, correlation, and qualification in one single tool. It combines Snort, Acid, MRTG, NTOP, OpenNMS, nmap, nessus, and rrdtool to provide the user with full control over every aspect of networking or security. Supported platform is Linux.
| | Author: | Dominique Karg,David Gil,Fabio Ospitia Trujillo,Julio Casal,Jesus D. Munoz | | Homepage: | http://sourceforge.net/projects/os-sim/ | | Changes: | Various bug fixes and feature enhancements. | | File Size: | 10710699 | | Last Modified: | Feb 25 11:07:04 2008 |
| MD5 Checksum: | 36006e6db4b43d1f5ebd163af68e2bd9 |
|
| /// File Name: |
ttyrpld-2.50.tar.bz2 |
Description:
|
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
| | Author: | Jan Engelhardt | | Homepage: | http://ttyrpld.sourceforge.net/ | | Changes: | Changed the packet format to be compatible between 32-bit and 64-bit. Added rplcvt utility. Explicit blacklists added. | | File Size: | 183137 | | Last Modified: | Jan 2 14:47:22 2008 |
| MD5 Checksum: | da3ca86e18f73f18030f92f8423d8000 |
|
| /// File Name: |
nuhe-0.06.tar.gz |
Description:
|
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
| | Author: | Tuomo Makinen | | Homepage: | http://nuhe.sourceforge.net/ | | Changes: | Multiple bug fixes and improvements. | | File Size: | 170547 | | Last Modified: | Dec 17 20:07:39 2007 |
| MD5 Checksum: | 4c08a59908e5db54b56ec73ef77fccb9 |
|
| /// File Name: |
nuhe-0.05.tar.gz |
Description:
|
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
| | Author: | Tuomo Makinen | | Homepage: | http://nuhe.sourceforge.net/ | | Changes: | Added multiple sources functionality for actions. Various other fixes and changes. | | File Size: | 169615 | | Last Modified: | Nov 30 00:43:20 2007 |
| MD5 Checksum: | 45c37c6df91532733e53d67d257c10db |
|
| /// File Name: |
honeytrap-1.0.0.tar.gz |
Description:
|
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
| | Author: | Tillmann Werner | | Homepage: | http://honeytrap.sourceforge.net/ | | Changes: | New plugins added, various improvements and bug fixes. | | File Size: | 852512 | | Last Modified: | Oct 29 11:20:36 2007 |
| MD5 Checksum: | 2d07e1efcae1b64011c60547544f1f80 |
|
| /// File Name: |
tenshi-0.9.1.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | Improved debug messages, fixed buggy multiple tail processes handling. | | File Size: | 25845 | | Last Modified: | Oct 5 22:45:40 2007 |
| MD5 Checksum: | 17a2f5f72b232b81b01f800e0e932a99 |
|
| /// File Name: |
tenshi-0.9.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | Added tail_multiple option, added csv option for comma separated output to custom parser, merged tailargs and filterargs features in tail, filter ones, added FAQ file, another round of rpm spec fixes + fd leak fix. | | File Size: | 25535 | | Last Modified: | Sep 19 12:04:57 2007 |
| MD5 Checksum: | 7cc328d940d6f6a3f36540d7f16de23d |
|
| /// File Name: |
ttyrpld-2.19.tar.bz2 |
Description:
|
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
| | Author: | Jan Engelhardt | | Homepage: | http://ttyrpld.sourceforge.net/ | | Changes: | The kernel interface has been reduced. Various other tweaks and fixes. | | File Size: | 177655 | | Last Modified: | Sep 18 22:41:18 2007 |
| MD5 Checksum: | ca4d1473082eb5a38582a626d5b9360d |
|
| /// Directory: |
/ syslog-ng / |
Description:
|
syslog-ng is a very configurable syslogd replacment
| | Total Files: | 60 | | Last Modified: | Sep 5 21:24:16 2007 |
|
| /// File Name: |
nuhe-0.04.tar.gz |
Description:
|
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
| | Author: | Tuomo Makinen | | Homepage: | http://nuhe.sourceforge.net/ | | Changes: | Multiple fixes and changes. | | File Size: | 159292 | | Last Modified: | Aug 29 00:31:10 2007 |
| MD5 Checksum: | e78e7ec3a35935da8296bafc7800541b |
|
| /// File Name: |
tenshi-0.8.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | Fixed some rpm spec issues. Added support for queue escalation. | | File Size: | 21692 | | Last Modified: | Aug 21 15:58:37 2007 |
| MD5 Checksum: | 45a85db41c7a19893662940e1605bf33 |
|
| /// File Name: |
devialog-0.9.0.tgz |
Description:
|
devialog is a behavior/anomaly/signature-based syslog intrusion detection system which can detect new, unknown attacks. It fits comfortably in a heterogeneous Unix/Linux/BSD environment at the core of a central syslog server. devialog can generate its own signatures and can act upon anomalies as configured by the system administrator. In addition, devialog can function as a traditional syslog parsing utility in which known signatures trigger actions.
| | Author: | Jeff Yestrumskas | | Homepage: | http://devialog.sourceforge.net/ | | Changes: | See changelog. | | File Size: | 18261 | | Last Modified: | Jul 7 00:37:31 2007 |
| MD5 Checksum: | 23a4ddf4b5e27adb4d2a2f2244ad1f73 |
|
| /// File Name: |
honeytrap-0.7.0.tar.gz |
Description:
|
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
| | Author: | Tillmann Werner | | Homepage: | http://honeytrap.sourceforge.net/ | | Changes: | Plugins can be prioritized. x86 CPU emulation module for generic shellcode analysis. Various other additions and improvements. | | File Size: | 796053 | | Last Modified: | May 21 21:36:39 2007 |
| MD5 Checksum: | d2e765e15a4959d0155ba9b83f2fef7a |
|
| /// File Name: |
tenshi-0.7.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | fifo option can be specified multiple times, logfile and fifo mode can be simultaneous, added sort_order option, added listen option for syslog server mode, see Changelog for full details. | | File Size: | 22118 | | Last Modified: | Mar 19 23:07:04 2007 |
| MD5 Checksum: | dad412c7fbf6923f0992a0b6b13d6e53 |
|
| /// File Name: |
honeytrap-0.6.4.tar.gz |
Description:
|
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
| | Author: | Tillmann Werner | | Homepage: | http://honeytrap.sourceforge.net/ | | Changes: | PoC plugin for locality sensitive hashing, Clean solution for giving packet control back to the kernel when using the ip_queue connection monitor, Fixed a segfault in the bpf filter string assembling routine, Failed mirror connections did not fall back to normal mode sometimes due to wrong return value handling for a non-blocking connect(). Fixed. The dynamic server code was redesigned. UDP support added. | | File Size: | 371797 | | Last Modified: | Jan 26 22:17:16 2007 |
| MD5 Checksum: | b5aad87bff055fde350a1913baeabdc8 |
|
| /// File Name: |
sh2log-1.0.tgz |
Description:
|
sh2log is a PTY sniffing program that captures all keystrokes and console output of physical and virtual consoles. sh2log works as a userland keylogger and does not require installation of a kernel module. Consequently, it can be run on a wide range of different UNIX platforms: Linux, SunOS, BSD, AIX, etc. The essential method of use here is that it man in the middles standard shells.
| | Author: | Christophe Devine | | File Size: | 80240 | | Last Modified: | Nov 8 21:43:57 2006 |
| MD5 Checksum: | 3742a060f5fdc97ee21bd8387a4bb80b |
|
| /// File Name: |
honeytrap-0.6.3.1.tar.gz |
Description:
|
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
| | Author: | Tillmann Werner | | Homepage: | http://honeytrap.sourceforge.net/ | | File Size: | 348247 | | Last Modified: | Oct 12 01:00:27 2006 |
| MD5 Checksum: | e81c42c4f69046911bd38e255ab66ee7 |
|
| /// File Name: |
tenshi-0.6.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | added group_host feature for selective hostname matching | | File Size: | 18782 | | Last Modified: | Oct 4 16:05:37 2006 |
| MD5 Checksum: | 2722d5bb4538b313347fafbb06eed3e0 |
|
| /// File Name: |
ttyrpld-2.18.tar.bz2 |
Description:
|
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
| | Author: | Jan Engelhardt | | Homepage: | http://ttyrpld.sourceforge.net/ | | Changes: | Fixed OpenBSD 3.9 kpatch. Readded workaround for OpenBSD/NetBSD EINTR signal handling that got lost in 2.17. | | File Size: | 139982 | | Last Modified: | Jul 2 06:15:29 2006 |
| MD5 Checksum: | b704ad4834e4b88c8979f5daf8f53ed1 |
|
| /// File Name: |
nuhe-0.01.tar.gz |
Description:
|
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
| | Author: | Tuomo Makinen | | Homepage: | http://nuhe.sourceforge.net/ | | File Size: | 107205 | | Last Modified: | Jul 2 06:03:16 2006 |
| MD5 Checksum: | af5e2a365f60ce8320f4d8c1a47321ce |
|
| /// File Name: |
tenshi-0.5.1.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | Fixed buggy noprefix queue implementation. | | File Size: | 18871 | | Last Modified: | Jun 26 23:42:11 2006 |
| MD5 Checksum: | 44361d5d8defc5170146f467a8825413 |
|
| /// File Name: |
tenshi-0.5.tar.gz |
Description:
|
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
| | Author: | Andrea Barisani | | Homepage: | http://dev.inversepath.com/trac/tenshi | | Changes: | Improved sanity checks, Added debug levels, level 2 enables Net::SMTP debug messages, Replaced Getopt::Std with Getopt::Long, and various other additions and tweaks. | | File Size: | 19220 | | Last Modified: | Jun 26 01:04:08 2006 |
| MD5 Checksum: | f296c8bde034ef379f6a6f62003ff8a2 |
|
|
|
|
|