Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.
☆45Aug 17, 2020Updated 5 years ago
Alternatives and similar repositories for graylog2thehive
Users that are interested in graylog2thehive are comparing it to the libraries listed below
Sorting:
- Ansible playbook to convert Sigma rules to ElastAlert rules☆10Feb 5, 2021Updated 5 years ago
- Ansible modules for the Graylog API☆60Jul 14, 2021Updated 4 years ago
- Splunk TA for alert action to TheHive-project☆11May 13, 2020Updated 5 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆24Jul 9, 2021Updated 4 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Jan 16, 2018Updated 8 years ago
- Use DNS to hunt for threats including DGAs☆15Jan 4, 2016Updated 10 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- ☆18May 23, 2024Updated last year
- Transform EQL detection rules to VQL artifacts☆12Nov 12, 2021Updated 4 years ago
- Recon Hunt Queries☆79May 16, 2021Updated 4 years ago
- LNK to JSON☆14Mar 7, 2019Updated 7 years ago
- Detection Ideas & Rules repository.☆178Sep 10, 2021Updated 4 years ago
- Investigate suspicious activity by visualizing Sysmon's event log☆430Dec 22, 2023Updated 2 years ago
- ☆18Sep 13, 2021Updated 4 years ago
- Invoke-LiveResponse☆150Feb 22, 2022Updated 4 years ago
- Generates TCP/UDP stream configuration files for NGINX based on the backend servers and ports provided☆11May 23, 2019Updated 6 years ago
- Appendix resources for Intrinsec's "Amélioration des capacités de détection" handbook.☆13Mar 26, 2018Updated 7 years ago
- A curated list of awesome things related to TheHive & Cortex☆185Oct 9, 2021Updated 4 years ago
- Elastic Beat for fetching and shipping Office 365 audit events☆66Sep 9, 2020Updated 5 years ago
- ☆14Feb 8, 2020Updated 6 years ago
- Carving tool based in Radare2 & Yara☆17Oct 30, 2018Updated 7 years ago
- ☆14Oct 24, 2024Updated last year
- Security Monitoring Resolution Categories☆138Nov 25, 2021Updated 4 years ago
- Repository for all cbapi example scripts☆16Sep 18, 2018Updated 7 years ago
- Collection of scripts used to analyse malware or emails☆20Oct 6, 2020Updated 5 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Aug 21, 2016Updated 9 years ago
- Walking the PEB in VBA☆24Apr 6, 2020Updated 5 years ago
- Maps process creation logged by Sysmon uses Google Org Chart API☆23Mar 5, 2016Updated 10 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆12Jul 1, 2021Updated 4 years ago
- Python script to automatically create sigma rules from The hive observables☆25Mar 17, 2019Updated 7 years ago
- A Canary which fires when uninstalled☆34Mar 16, 2021Updated 5 years ago
- osquery query packs☆14Aug 31, 2018Updated 7 years ago
- Searches For Threat Hunting and Security Analytics☆238Mar 26, 2025Updated 11 months ago
- A collection of presentations and other contributions I have made to conferences.☆36Sep 9, 2024Updated last year
- aggregated repo for all conferences and talks I am giving☆17Oct 30, 2021Updated 4 years ago
- Python unbup script for McAfee .bup files (with some additional fun features). This script is fully implemented in python it's not just a…☆37Apr 24, 2018Updated 7 years ago
- Alert condition plugin for Graylog to perform correlation☆28Jan 14, 2026Updated 2 months ago
- This repository serves as a place for community created Targets and Modules for use with KAPE.☆824Mar 12, 2026Updated last week
- Django web interface for managing Yara rules☆196Jul 28, 2018Updated 7 years ago