[Bro] Writing a Bro script to make an API call?

Seth Hall seth at icir.org
Mon Feb 25 12:57:38 PST 2013


On Feb 24, 2013, at 10:08 PM, Jesse Bowling <jessebowling at gmail.com> wrote:

> Similar to how Bro implements the detect-MHR script, I'd like to do a lookup against a REST API for hashes on executables...I can do it easily enough in python but...How can I do it in Bro?

No, not yet.  I'm hoping that for 2.2 we can get some form of active HTTP into Bro.  I have something implemented in my junk drawer repository already, but it needs a bug fix that hasn't been merged into master yet.

  .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro-ids.org/





More information about the Bro mailing list