-
Create gnupg folder
$ mkdir -p ~/.gnupg/
#/bin/bash | |
#Ask some info | |
echo -n "Enter ELK Server IP or FQDN: " | |
read eip | |
echo -n "Enter Admin Web Password: " | |
read adpwd | |
#Update System | |
sudo apt-get update | |
sudo apt-get upgrade -y |
@-moz-document url-prefix("https://graylog"), url-prefix("https://gettingstarted.graylog.org") { | |
body { | |
background-color: black; | |
color: #999; | |
} | |
h1, h2, h3, h4, h5, h6 { | |
color: #ddd; | |
} | |
svg { | |
background-color: #666; |
#!/usr/bin/env python | |
# findPwnedDB.py | |
# | |
# Last update: 1/13/2020 | |
# | |
# Added: | |
# CassandraDB support | |
# Additional DBs | |
# Docker XMR mining flags (Thanks Unit42!) | |
# https://unit42.paloaltonetworks.com/graboid-first-ever-cryptojacking-worm-found-in-images-on-docker-hub/ |
input { | |
file { | |
path => "/var/log/fail2ban.log" | |
type => "fail2ban" | |
} | |
} | |
filter { | |
if [type] == "fail2ban" { | |
grok { |
[Unit] | |
Description=Bro | |
After=network.target | |
[Service] | |
ExecStartPre=-/bro/bin/broctl cleanup | |
ExecStartPre=/bro/bin/broctl check | |
ExecStartPre=/bro/bin/broctl install | |
ExecStart=/bro/bin/broctl start | |
ExecStop=/bro/bin/broctl stop |
#!/usr/bin/env python | |
import sys, paramiko | |
if len(sys.argv) < 5: | |
print "args missing" | |
sys.exit(1) | |
hostname = sys.argv[1] | |
password = sys.argv[2] |
#Using nfdump
nfdump
is a light-weight and simple netflow collector.
#Receive netflow
nfcapd -w -D -l /flows -p 2055
#Show basic stats
My NL i7/16GB XPS 9310 has a Killer AX1650s WiFi chip, which eventually worked. Other Killer chips may not work.
I ordered the Windows Home edition, because developer edition with Linux was not available in my country. Apparently you can reclaim €100 from Dell if you don't use Windows.