SigmaHQ / cookiecutter-pySigma-backendLinks
pySigma Cookiecutter backend template
☆25Updated 3 months ago
Alternatives and similar repositories for cookiecutter-pySigma-backend
Users that are interested in cookiecutter-pySigma-backend are comparing it to the libraries listed below
Sorting:
- A pySigma wrapper to manage detection rules.☆39Updated 3 weeks ago
- ☆35Updated 8 months ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆79Updated last month
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆41Updated last month
- A community event for security researchers to share their favorite notebooks☆107Updated last year
- This repository includes a mapping table and a reference process that allows converting between STIX 2.1 Course of Action objects that ma…☆16Updated 2 years ago
- Recon Hunt Queries☆77Updated 4 years ago
- Sigma Detection Rule Repository☆88Updated 5 years ago
- Augmentation to Machine Readable CTI☆31Updated last month
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆53Updated 2 years ago
- A preconfigured Velociraptor triage collector☆52Updated last week
- ☆8Updated 8 months ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆67Updated last year
- ☆41Updated 6 months ago
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆38Updated last year
- pySigma Splunk backend☆39Updated last month
- Convert Sigma rules to LogRhythm searches☆21Updated 3 years ago
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆57Updated 3 years ago
- Convert Sigma rules to SIEM queries, directly in your browser.☆89Updated last week
- ☆92Updated last month
- VelociraptorMCP is a Model Context Protocol bridge for exposing LLMs to MCP clients.☆36Updated last week
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆81Updated last month
- Windows event log anomaly detection powered by ATPA technologies☆26Updated 2 years ago
- This repository contains sample log data that were collected after running adversary simulations in Microsoft 365☆21Updated 8 months ago
- A STIX 2.1 Extension Definition for the Course of Action (COA) object type. The nested property extension allows a COA to share machine-r…☆23Updated last year
- SigmaHQ pySigma CrowdStrike processing pipeline☆26Updated 8 months ago
- ☆16Updated 3 months ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated last year
- Import specific data sources into the Sigma generic and open signature format.☆78Updated 3 years ago
- ☆68Updated 4 months ago