ArnaudLoos / Logstash-WinEventlogLinks
A Logstash grok filter to parse and tokenize the message field of Windows eventlog entries.
☆13Updated 9 years ago
Alternatives and similar repositories for Logstash-WinEventlog
Users that are interested in Logstash-WinEventlog are comparing it to the libraries listed below
Sorting:
- PowerShell Script for Windows Server Compliance / Security Configuration Audit☆62Updated 8 years ago
- Elastic Beat for fetching and shipping Office 365 audit events☆67Updated 4 years ago
- Example configuration files for Logstash☆44Updated 5 years ago
- Sysmon Splunk App☆47Updated 6 years ago
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆53Updated 2 years ago
- ☆18Updated 6 years ago
- A series of scripts☆98Updated 3 years ago
- AdmPwd.E client and support tools☆32Updated 4 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆66Updated 3 years ago
- PowerShell Module for automating Tenable Nessus Vulnerability Scanner.☆88Updated 2 years ago
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆82Updated 2 years ago
- Ingest Nessus files into Elasticsearch using PowerShell!☆21Updated last year
- Chef cookbook for windows server hardening☆15Updated 7 years ago
- vSphere Security Audit Scripts, Based on the vSphere Hardening Guide.☆25Updated 4 years ago
- Tony's collection of powershell scripts, typically geared toward cybersec☆34Updated this week
- Tools to create a Native Windows Audit Collection Platform. Active Directory example provided☆78Updated 5 years ago
- A collection of Splunk dashboard templates.☆15Updated 6 years ago
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆66Updated 7 years ago
- This module is used to report phishing URLs to their WHOIS/RDAP abuse contact information.☆42Updated 7 years ago
- PowerShell Script for Agentless Incident Response☆25Updated 7 years ago
- ☆58Updated last year
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆94Updated 2 years ago
- Deploy and maintain Symon through the Splunk Deployment Sever☆31Updated 4 years ago
- Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was …☆77Updated 7 years ago
- Office365 Log Analysis Framework☆82Updated 6 years ago
- Sysmon configuration☆65Updated 6 years ago
- A central place for me to share interesting PSRemoting configurations☆16Updated 7 years ago
- ☆38Updated 5 years ago
- ☆41Updated 2 years ago
- A collection of infrastructure related tests for use with Pester & PowerShell.☆46Updated 5 years ago