Analyzing Network Flow Data With Netflow

Use when parse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing patterns. Uses the Python netflow library to decode flow records, builds traffic baselines, and applies statistical analysis to identify flows with abnormal byte counts, connection durations, and periodic timing patterns. Use when working with analyzing network flow data with netflow.

oyi77 27005e6 3.8 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/analyzing-network-flow-data-with-netflow commit 27005e6f37

Frequently asked questions

npx skillmds add oyi77/analyzing-network-flow-data-with-netflow