SEKOIA-IO / documentation
SEKOIA.IO Documentation - The Intelligence-Driven SaaS SIEM
☆46Updated this week
Alternatives and similar repositories for documentation:
Users that are interested in documentation are comparing it to the libraries listed below
- Automate your SOC with SEKOIA.IO's Automation Library. Pull Requests are always welcome and highly appreciated!☆15Updated this week
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆78Updated last week
- OpenCTI datasets☆27Updated last year
- ☆87Updated last month
- ☆27Updated 4 years ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆147Updated last month
- SOARCA - The Open Source CACAO-based Security Orchestrator!☆71Updated this week
- DFIR ORC PARSER PROJECT☆25Updated last month
- The Threat Actor Profile Guide for CTI Analysts☆106Updated last year
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆167Updated this week
- BlackBerry Threat Research & Intelligence☆98Updated last year
- Extracts IoCs, TTPs and the relationships between them. Outputs a STIX 2.1 bundle.☆51Updated last week
- Threat Detection & Anomaly Detection rules for popular open-source components☆51Updated 2 years ago
- Welcome to the SEKOIA.IO Community repository!☆147Updated 3 weeks ago
- LOKI2 - Simple IOC and YARA Scanner☆88Updated 8 months ago
- pySigma Elasticsearch backend☆50Updated this week
- Pythia is a versatile query format designed to facilitate the discovery of malicious infrastructure by seamlessly converting into the syn…☆32Updated 8 months ago
- An opensource sigma conversion tool built using pysigma☆122Updated 3 months ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (EXT4, XFS) journals (not systemd-journald), generates…☆62Updated this week
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆77Updated 5 months ago
- Collection of Jupyter Notebooks by @fr0gger_☆160Updated 2 weeks ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆119Updated last year
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆26Updated 3 weeks ago
- A specification and style guide for YARA rules☆47Updated last year
- Sample evtx files to use for testing hayabusa detection rules☆52Updated 5 months ago
- OpenCTI Python Client☆128Updated this week
- MISP Playbooks☆189Updated last month
- A MITRE Caldera plugin☆42Updated 4 months ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆44Updated 3 weeks ago
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆126Updated last year