Malice Bro Plugin - Scan PCAP or bind to interface and scan files off the wire.
- Install Docker.
- Download trusted build from public DockerHub:
docker pull malice/bro
docker run --rm malice/bro
$ docker run --rm -v /path/to/malware:/malware:ro malice/bro PCAP
{
"bro": {
}
}
Find a bug? Want more features? Find something missing in the documentation? Let me know! Please don't hesitate to file an issue.
See CHANGELOG.md
See all contributors on GitHub.
Please update the CHANGELOG.md and submit a Pull Request on GitHub.
MIT Copyright (c) 2016-2017 blacktop