I started this blog so that I could document and share my experiences with Bro-IDS.
I'm beginning to distribute the scripts that I have written over time to detect various issues on our network (I work here). To help distribute the scripts and allows others to work on them with a shared version control repository, I created an account at GitHub. That should allow people to grab my scripts, make changes, and then push their changes back to me for inclusion in the main set of analysis scripts. Here's my github repository. I'll be documenting many of the scripts that are and will be in that repository here as I have time.
Hopefully I will be able to convince more people to run Bro through this blog too.