Skip to content

Issues: cisagov/Malcolm

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Assignee
Filter by who’s assigned
Sort

Issues list

Opensearch running abnormally bug Something isn't working
#489 opened Nov 7, 2024 by alleniverson33
OpenSearch to Splunk export/searching capabilities enhancement New feature or request opensearch Relating to Malcolm's use of OpenSearch research Research or proof-of-concept for an idea
#487 opened Nov 5, 2024 by mmguero
automated testing testing Related to automated system testing of Malcolm
#486 opened Nov 5, 2024 by mmguero v24.12.0
investigate Strelka for file scanning carving Relating to carving (extraction) of files from traffic and the scanning of those files enhancement New feature or request research Research or proof-of-concept for an idea
#485 opened Nov 5, 2024 by mmguero
not parsing Profinet Real-Time Protocol directly on ethernet frame ics Relating to ICS (Industrial Control Systems) devices zeek Relating to Malcolm's use of Zeek
#484 opened Nov 5, 2024 by mmguero
install.py should recommend different settings for minimal memory instances, if possible install.py Relating to the install.py configuration script opensearch Relating to Malcolm's use of OpenSearch performance Related to speed/performance
#483 opened Nov 5, 2024 by mmguero
support HTTP proxy for geoip database, rule updates, etc. enhancement New feature or request
#482 opened Nov 5, 2024 by mmguero
replace logstash with fluentd beats Relating to Malcolm's use of Beats enhancement New feature or request logstash Relating to Malcolm's use of Logstash research Research or proof-of-concept for an idea sensor For issues dealing with the Hedgehog OS capture sensor
#481 opened Nov 5, 2024 by mmguero
AIDE false positives in ISO-installed Hedgehog and Malcolm bug Something isn't working iso relating to the ISO-installed environment for Malcolm and/or Hedgehog Linux Related to running Malcolm under Linux security Related to issues with bearing on the security of Malcolm itself
#480 opened Nov 5, 2024 by mmguero
optimize OpenSearch index storage opensearch Relating to Malcolm's use of OpenSearch performance Related to speed/performance
#479 opened Nov 5, 2024 by mmguero
Compare NetBox inventory with database of known vulnerabilities enhancement New feature or request external Depends on a bug or feature external to this project netbox Related to Malcolm's use of NetBox
#478 opened Nov 5, 2024 by mmguero
Populate NetBox inventory via active discovery enhancement New feature or request external Depends on a bug or feature external to this project netbox Related to Malcolm's use of NetBox
#477 opened Nov 5, 2024 by mmguero
allow forwarding setup to specify Malcolm connection information in one place (vs. three) enhancement New feature or request iso relating to the ISO-installed environment for Malcolm and/or Hedgehog sensor For issues dealing with the Hedgehog OS capture sensor
#476 opened Nov 5, 2024 by mmguero
Integrate Sigma rules via OpenSearch Security Analytics dashboards Relating to Malcolm's OpenSearch Dashboards interface enhancement New feature or request logstash Relating to Malcolm's use of Logstash
#475 opened Nov 5, 2024 by mmguero z.staging
Live capture on AWS using VPC traffic mirroring capture Relating to pcap-capture container cloud Relating to deployment of Malcolm in the cloud and/or with Kubernetes
#474 opened Nov 5, 2024 by mmguero z.staging
kubernetes (next steps) - helm chart(s) cloud Relating to deployment of Malcolm in the cloud and/or with Kubernetes
#473 opened Nov 5, 2024 by mmguero z.staging
kubernetes - check out filebeat on network volumes beats Relating to Malcolm's use of Beats cloud Relating to deployment of Malcolm in the cloud and/or with Kubernetes
#472 opened Nov 5, 2024 by mmguero
support configuration for and enabling of TLS decryption for Zeek enhancement New feature or request zeek Relating to Malcolm's use of Zeek
#471 opened Nov 5, 2024 by mmguero
suport PCAP files with 802.11 packet structure arkime Relating to Malcolm's use of Arkime enhancement New feature or request external Depends on a bug or feature external to this project upload Relating to PCAP and/or Zeek log ingestion
#470 opened Nov 5, 2024 by mmguero
Kubernetes - Document how to get running on Azure Kubernetes Service (AKS) cloud Relating to deployment of Malcolm in the cloud and/or with Kubernetes doc Relating to Malcolm documentation
#469 opened Nov 5, 2024 by mmguero
Support and document receiving cloud logs cloud Relating to deployment of Malcolm in the cloud and/or with Kubernetes doc Relating to Malcolm documentation logstash Relating to Malcolm's use of Logstash
#468 opened Nov 5, 2024 by mmguero
NetFlow v9 input enhancement New feature or request logstash Relating to Malcolm's use of Logstash
#467 opened Nov 5, 2024 by mmguero
OpenSearch report export to PDF/PNG fails on Firefox with some dashboards bug Something isn't working dashboards Relating to Malcolm's OpenSearch Dashboards interface regression It worked at one point...
#466 opened Nov 5, 2024 by mmguero
examine default OpenSearch Dashboards dashboard dashboards Relating to Malcolm's OpenSearch Dashboards interface enhancement New feature or request UI Relating to general UI experience
#465 opened Nov 5, 2024 by mmguero
Add PCAP-over-IP support capture Relating to pcap-capture container enhancement New feature or request
#464 opened Nov 5, 2024 by mmguero
ProTip! Updated in the last three days: updated:>2024-11-04.