Security-Onion-Solutions / securityonion-image
☆48Updated this week
Alternatives and similar repositories for securityonion-image:
Users that are interested in securityonion-image are comparing it to the libraries listed below
- ☆53Updated this week
- ☆35Updated 4 years ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- ☆88Updated last week
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆53Updated 2 years ago
- Incident Response Network Tools☆24Updated 3 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆65Updated 3 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated last year
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆109Updated 2 years ago
- OSSEM Common Data Model☆55Updated 2 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 4 years ago
- OSSEM Data Dictionaries☆59Updated 3 months ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated 2 weeks ago
- A CALDERA plugin☆76Updated 2 weeks ago
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- A curated list of awesome things related to TheHive & Cortex☆179Updated 3 years ago
- The Infosec Community Definitive Guide to Jupyter Notebooks☆121Updated 4 years ago
- Collection of walkthroughs on various threat hunting techniques☆75Updated 4 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- Docker configurations for TheHive, Cortex and 3rd party tools☆121Updated 2 years ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆67Updated last year
- Best practices in threat intelligence☆46Updated 2 years ago
- HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physic…☆79Updated 10 months ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆92Updated 3 years ago
- Zeek Extension to Collect Metadata for Profiling of Endpoints and Proxies☆31Updated last year
- ☆51Updated 3 years ago
- A community event for security researchers to share their favorite notebooks☆107Updated last year
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆88Updated last month
- This program exports MITRE ATT&CK framework in ELK dashboard☆78Updated 2 years ago