Skip to content

Instantly share code, notes, and snippets.

Christian Brunotte lathspell

Block or report user

Report or block lathspell

Hide content and notifications from this user.

Learn more about blocking users

Contact Support about this user’s behavior.

Learn more about reporting abuse

Report abuse
View GitHub Profile
@lathspell
lathspell / __etc__logstash__conf.d__local.conf
Created Nov 9, 2014
Logstash configuration (playing around)
View __etc__logstash__conf.d__local.conf
#
# Resources:
# - Logstash manual at http://logstash.net/
# - Grok Pattern Debugger at http://grokdebug.herokuapp.com/
# - Other patterns at /opt/logstash/pattern/
#
input {
syslog {
@lathspell
lathspell / __etc__logstash__patterns__dpkg.conf
Last active Jan 22, 2016
Logstash grok pattern file for /var/log/dpkg.log
View __etc__logstash__patterns__dpkg.conf
DPKG_TIMESTAMP %{TIMESTAMP_ISO8601:timestamp}
DPKG_PACKAGE [-+~\.0-9a-zA-Z]+
DPKG_ARCH [a-z0-9]+
DPKG_PKGARCH %{DPKG_PACKAGE:package}(:%{DPKG_ARCH:arch})?
DPKG_VERSION [-+~<>\.0-9a-zA-Z]+
DPKG_ACTION0 (startup archives|startup packages|conffile)
DPKG_ACTION1 (configure|remove|upgrade|purge|status (config-files|installed|not-installed|triggers-awaited|triggers-pending|unpacked|half-installed|half-configured))
DPKG_ACTION2 (trigproc|upgrade)
DPKG_0_VERSIONS %{DPKG_ACTION0:action}
DPKG_1_VERSIONS (%{DPKG_ACTION1:action} %{DPKG_PKGARCH} %{DPKG_VERSION:version})$
View call.pl
#!/usr/bin/env perl
#
# Forked from https://gist.github.com/tupinek/6605090
#
use strict;
use warnings;
use Getopt::Long qw(:config posix_default bundling);
use Net::SIP;
View hb-test.py
#!/usr/bin/env python2
# Quick and dirty demonstration of CVE-2014-0160 by Jared Stafford (jspenguin@jspenguin.org)
# The author disclaims copyright to this source code.
import sys
import struct
import socket
import time
import select
View hb-test.py
#!/usr/bin/env python2
# Quick and dirty demonstration of CVE-2014-0160 by Jared Stafford (jspenguin@jspenguin.org)
# The author disclaims copyright to this source code.
import sys
import struct
import socket
import time
import select
You can’t perform that action at this time.