A Ruleset to enhance detection capabilities of Ossec using Sysmon
☆97Apr 13, 2022Updated 4 years ago
Alternatives and similar repositories for ossec-sysmon
Users that are interested in ossec-sysmon are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆73Jul 21, 2021Updated 4 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆40Jun 8, 2020Updated 6 years ago
- Useful scripts for those administering Wazuh☆96Jan 6, 2026Updated 5 months ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆28Jul 21, 2020Updated 5 years ago
- Wazuh - Chef cookbooks☆25Jul 26, 2023Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆21Oct 17, 2021Updated 4 years ago
- ☆23Mar 1, 2022Updated 4 years ago
- Wazuh prometheus exporter☆35Jul 4, 2025Updated 11 months ago
- Personal scripts☆15Sep 11, 2024Updated last year
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆27Jul 27, 2020Updated 5 years ago
- Wazuh Agent as Docker Image☆25May 16, 2024Updated 2 years ago
- Wazuh integration TheHive☆42Feb 21, 2023Updated 3 years ago
- Zabbix Templates and scripts to monitor OSSEC or Wazuh Manager Intrusion Detection☆16Sep 18, 2025Updated 8 months ago
- Wazuh - Puppet module☆55Updated this week
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Tools for Wazuh by Juan C. Tello☆16Jan 13, 2022Updated 4 years ago
- A repository of sysmon configuration modules☆3,055Aug 21, 2024Updated last year
- ☆19Oct 20, 2021Updated 4 years ago
- Convert Sigma rules to Wazuh rules☆77Sep 13, 2025Updated 9 months ago
- Advanced Wazuh Rules for more accurate threat detection. Feel free to implement within your own Wazuh environment, contribute, or fork!☆1,325Mar 11, 2026Updated 3 months ago
- Wazuh - RESTful API☆80Sep 17, 2024Updated last year
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆204Apr 18, 2022Updated 4 years ago
- Collection of generic YARA rules☆16Mar 18, 2026Updated 2 months ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19May 11, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Tools to integrate 2 great security tools OPNsense and Wazuh☆33Aug 26, 2021Updated 4 years ago
- ☆24Jul 7, 2023Updated 2 years ago
- NIST based open source security automation delivered as AWS cloudformation☆21Jan 8, 2020Updated 6 years ago
- Wazuh - Wazuh Kubernetes Helm chart. This repo is not maintained by Wazuh team. This is community project.☆28Jun 2, 2022Updated 4 years ago
- OpenRport New opensource UI☆27Sep 15, 2025Updated 9 months ago
- Our collection of Wazuh detection rules for our Offense Lab☆20Feb 13, 2022Updated 4 years ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆12Jun 20, 2020Updated 5 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆26Dec 2, 2025Updated 6 months ago
- Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into …☆826Nov 5, 2023Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- collector☆64Updated this week
- Osquery Packs we use for customer security hardening☆12Jun 30, 2025Updated 11 months ago
- ☆13Feb 25, 2021Updated 5 years ago
- SIAC is an enterprise SIEM built on open-source technology.☆114Oct 31, 2018Updated 7 years ago
- ☆87Mar 7, 2025Updated last year
- ☆33Dec 12, 2021Updated 4 years ago
- Django middleware and signals for handling security events☆14Apr 14, 2021Updated 5 years ago