threatbus
Grafana
threatbus | Grafana | |
---|---|---|
4 | 379 | |
254 | 60,503 | |
0.0% | 0.8% | |
0.0 | 10.0 | |
about 1 year ago | 1 day ago | |
Python | TypeScript | |
BSD 3-clause "New" or "Revised" License | GNU Affero General Public License v3.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
threatbus
-
Ask HN: Who is hiring? (September 2021)
Tenzir | C++, ReasonML, Rust, Python | Hamburg, Germany or Remote (EU timezones) | Open-source | Full-time | https://tenzir.com
Tenzir is an early-stage startup that builds a next generation data-plane for modern Security Operations Centers. It is our mission to help defenders pull ahead by integrating widely used open source tools and building solutions that reduce the time to detect attacks and help with post-mortem investigations. To that end, we develop the high-performance C++ database [VAST](https://github.com/tenzir/vast) with a ReasonML-based frontend that is served by a Rust API. We also develop [Threat Bus](https://github.com/tenzir/threatbus), a dissemination layer for threat intelligence, which orchestrates detection and response products in a publish/subscribe architecture.
We're currently hiring for
-
Ask HN: Who is hiring? (July 2021)
Tenzir | Hamburg, Germany| DevOps Platform Engineer | FULL-TIME | REMOTE | €70-80k | https://tenzir.com
Tenzir is seeking an experienced and passionate DevOps / Platform engineer who enjoys bringing open-core security technology into production deployment shape. We cultivate a UNIX-centric mindset: security operators use our high-performance C++ database VAST (https://github.com/tenzir/vast) to hunt in telemetry data, either via the CLI or our ReasonML-based frontend getting its data through a Rust API.
We also develop Threat Bus (https://github.com/tenzir/threatbus), a messaging layer for federating security content.
=== Role & Responsibilities ===
- Improve our CI/CD pipelines for continuous releases with GitHub Actions to build projects of different languages on various platforms and to automate unit and integration testing.
- Automate continuous deployment strategies in different environments, for our own staging and production clusters, but also on-prem (appliances) or with different cloud providers.
- Implement a reliable backend infrastructure for appliance and fleet management, configuration management and multi-layer VPNs.
- Write integrations with other tools from the (security) ecosystem to support a wider range of data formats.
- Be responsible for entire infrastructure segments, from whiteboard design to implementation and automation for production systems.
=== Interview Process ===
1. Fill out the application form at https://tenzir.com/career/devops-platform-engineer/
2. Phone call to get to know each other and identify potential roadblocks (30min)
3. Technical interview(s) (1-2h)
---
If you are interested in cutting-edge C++ freelance work, or look for a local sysadmin position, please reach out directly to us at [email protected].
-
Ask HN: Who is hiring? (April 2021)
Tenzir | DevOps Platform Engineer | FULL-TIME | €70k | Hamburg, Germany | http://tenzir.com
Tenzir is seeking an experienced and passionate DevOps / Platform engineer who enjoys bringing open-core security technology into production deployment shape. We cultivate a UNIX-centric mindset: security operators use our high-performance C++ database VAST (https://github.com/tenzir/vast) to hunt in telemetry data, either via the CLI our our ReasonML-based frontend getting its data through a Rust API. We also develop Threat Bus (https://github.com/tenzir/threatbus), a dissemination layer for threat intelligence, which orchestrates detection and response.
=== Role & Responsibilities ===
As a key contributor to our infrastructure, you will improve and automate critical processes for building, packaging, and deploying our technology in test and production environments. Concretely:
-
[Hiring] Senior DevOps Platform Engineer | Cyber Security | +/-3h from Germany
Tenzir is seeking an experienced and passionate DevOps / Platform engineer who enjoys bringing open-core security technology into production deployment shape. We cultivate a UNIX-centric mindset: security operators use our high-performance C++ database VAST to hunt in telemetry data, either via the CLI our our ReasonML-based frontend getting its data through a Rust API. We also develop Threat Bus, a dissemination layer for threat intelligence, which orchestrates detection and response.
Grafana
-
Docker Log Observability: Analyzing Container Logs in HashiCorp Nomad with Vector, Loki, and Grafana
Monitoring application logs is a crucial aspect of the software development and deployment lifecycle. In this post, we'll delve into the process of observing logs generated by Docker container applications operating within HashiCorp Nomad. With the aid of Grafana, Vector, and Loki, we'll explore effective strategies for log analysis and visualization, enhancing visibility and troubleshooting capabilities within your Nomad environment.
-
Golang: out-of-box backpressure handling with gRPC, proven by a Grafana dashboard
To help us visualize these scenarios, we'll build a Grafana Dashboard so we can follow along.
-
Monitoring, Observability, and Telemetry Explained
Visualization and Analysis: Choose a tool with intuitive and customizable dashboards, charts, and visualizations. A question to ask is, "Are the visualization features of this tool user-friendly and adaptable to our team's specific needs?" Tools like Grafana and Kibana provide powerful visualization capabilities.
-
4 facets of API monitoring you should implement
Prometheus: Open-source monitoring system. Often used together with Grafana.
- Grafana: Open and composable observability and data visualization platform
-
The Mechanics of Silicon Valley Pump and Dump Schemes
Grafana
-
Reverse engineering the Grafana API to get the data from a dashboard
Yes I'm aware that Grafana is open source but the method I used to find the API endpoints is far quicker than digging through hundreds of files in a codebase I'm not familiar with.
-
Building an Observability Stack with Docker
So, you will add one last container to allow us to visualize this data: Grafana, an open-source analytics and visualization platform that allows us to see traces and metrics simply. You can set Grafana to read data from both Tempo and Prometheus by setting them as datastores with the following grafana.datasource.yaml config file:
-
How to collect metrics from node.js applications in PM2 with exporting to Prometheus
In example above, we use 2 additional parameters: code (HTTP response code) and page (page identifier), which provide detailed statistics. For example, you can build such graphs in Grafana:
-
Root Cause Chronicles: Quivering Queue
Robin switched to the Grafana dashboard tab, and sure enough, the 5xx volume on web service was rising. It had not hit the critical alert thresholds yet, but customers had already started noticing.
What are some alternatives?
StratosphereLinuxIPS - Slips, a free software behavioral Python intrusion prevention system (IDS/IPS) that uses machine learning to detect malicious behaviors in the network traffic. Stratosphere Laboratory, AIC, FEL, CVUT in Prague.
Thingsboard - Open-source IoT Platform - Device management, data collection, processing and visualization.
misp-galaxy - Clusters and elements to attach to MISP events or attributes (like threat actors)
Apache Superset - Apache Superset is a Data Visualization and Data Exploration Platform [Moved to: https://github.com/apache/superset]
gnomad-browser - Explore gnomAD datasets on the web
Heimdall - An Application dashboard and launcher
tenzir - Open source security data pipelines.
Wazuh - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
misp-wireshark - Lua plugin to extract data from Wireshark and convert it into MISP format
Thingspeak - ThingSpeak is an open source “Internet of Things” application and API to store and retrieve data from things using HTTP over the Internet or via a Local Area Network. With ThingSpeak, you can create sensor logging applications, location tracking applications, and a social network of things with status updates.
Gravitational Teleport - The easiest, and most secure way to access and protect all of your infrastructure.
uptime-kuma - A fancy self-hosted monitoring tool