Anonymity94 / spl2dslLinks
Convert Splunk SPL to Elasticsearch DSL with pegjs
☆13Updated 3 years ago
Alternatives and similar repositories for spl2dsl
Users that are interested in spl2dsl are comparing it to the libraries listed below
Sorting:
- Convert Splunk SPL to ClickHouse SQL with pegjs☆13Updated 3 years ago
- Mine patterns from logs☆27Updated 9 years ago
- ☆23Updated 5 years ago
- Elastic Search Processing Language☆50Updated 9 years ago
- Analysis of HTTP traffic and detection of anomalous user behavior in allowed actions. UEBA system.☆24Updated 2 years ago
- Apache Metron☆60Updated 5 years ago
- Elasticsearch querying library☆20Updated 6 years ago
- A fault-tolerant events/alerts correlation engine☆25Updated 6 years ago
- Match tens of thousands of regular expressions within milliseconds - Java bindings for Intel's hyperscan 5☆194Updated last month
- A CEP library to run Siddhi within Apache Flink™ Streaming Application (Not maintained)☆247Updated last year
- 类filebeat的轻量级日志采集工具☆70Updated 6 years ago
- Simple parser for Splunk Processing Language (SPL) written in Python.☆35Updated 7 years ago
- Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the comm…☆100Updated 2 years ago
- Open-source framework to detect outliers in Elasticsearch events☆210Updated 2 years ago
- 🏵️ A lightweight multi-cluster, cross-version unified Elasticsearch / Opensearch / Easysearch governance platform.☆77Updated 3 weeks ago
- User and Entity Behavior Analytics by deep learning☆117Updated 4 years ago
- A robust, and flexible open source User & Entity Behavior Analytics (UEBA) framework used for Security Analytics. Developed with luv by D…☆463Updated last year
- SysFlow documentation and issues tracker☆46Updated last year
- 🚀 A High-performance Gateway Designed for Search Scenarios. Good friend of Elasticsearch / Opensearch / Easysearch.☆77Updated 3 weeks ago
- flink-cep☆17Updated 7 years ago
- GO开发而成,用于NIDS HIDS 分析的规则引擎,使用WorkerPool 高性能检测,支持多字段 "和" "或" 检测, 支持频率检测☆77Updated 10 months ago
- ES索引的维护脚本, 每天close delete reallocate optimize索引☆23Updated 6 years ago
- A Zeek log writer plugin that publishes to Kafka.☆51Updated 3 months ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 8 years ago
- Repository of creating different example suricata data sets☆36Updated 6 years ago
- Query.AI plugin for Kibana☆13Updated 6 years ago
- Open source endpoint agent providing host information to Zeek. [v2]☆90Updated 2 weeks ago
- Open Source Security Information and event Management☆105Updated 10 years ago
- didiyun super-agent daemon☆58Updated 7 years ago