Anonymity94 / spl2dsl
Convert Splunk SPL to Elasticsearch DSL with pegjs
☆13Updated 2 years ago
Alternatives and similar repositories for spl2dsl:
Users that are interested in spl2dsl are comparing it to the libraries listed below
- Convert Splunk SPL to ClickHouse SQL with pegjs☆13Updated 2 years ago
- Mine patterns from logs☆27Updated 8 years ago
- Elastic Search Processing Language☆49Updated 8 years ago
- A fault-tolerant events/alerts correlation engine☆25Updated 5 years ago
- ☆23Updated 4 years ago
- Elasticsearch querying library☆20Updated 5 years ago
- Apache Metron☆59Updated 4 years ago
- Analysis of HTTP traffic and detection of anomalous user behavior in allowed actions. UEBA system.☆22Updated 2 years ago
- GO开发而成,用于NIDS HIDS 分析的规则引擎,使用WorkerPool 高性能检测,支持多字段 "和" "或" 检测, 支持频率检测☆77Updated 3 weeks ago
- ES索引的维护脚本, 每天close delete reallocate optimize索引☆23Updated 5 years ago
- A CEP library to run Siddhi within Apache Flink™ Streaming Application (Not maintained)☆243Updated last year
- Simple parser for Splunk Processing Language (SPL) written in Python.☆35Updated 6 years ago
- A Zeek log writer plugin that publishes to Kafka.☆46Updated 2 months ago
- flink-cep☆17Updated 6 years ago
- 类filebeat的轻量级日志采集工具☆69Updated 5 years ago
- SysFlow documentation and issues tracker☆46Updated 5 months ago
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆23Updated last year
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆32Updated 4 years ago
- ☆28Updated last year
- Application and service identification rules for Suricata☆29Updated 2 years ago
- Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the comm…☆94Updated last year
- Open Source Security Information and event Management☆88Updated 9 years ago
- Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)☆78Updated 4 months ago
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆14Updated 3 years ago
- EasyAgent is an infrastructure component, applied to manage the life-cycle of services on the remote host.☆32Updated 2 years ago
- golang sliding or tumbling window stream-processing☆12Updated 3 years ago
- TLS 技术原理与 1.0协议旁路解密实现方法☆26Updated 6 years ago
- sqldev 是一款面向企业的数据库运维和管控系统☆28Updated last year
- Yara powered NIDS with high speed packet capture powered by PF_RING☆68Updated 9 months ago