SigmaHQ / legacy-sigmatoolsView external linksLinks
Legacy Sigma Tools (sigmac etc.)
☆15May 7, 2023Updated 2 years ago
Alternatives and similar repositories for legacy-sigmatools
Users that are interested in legacy-sigmatools are comparing it to the libraries listed below
Sorting:
- Hunt the windows Registry automatically using VQL☆13Jan 6, 2026Updated last month
- An extension of the sigma standard to include security metrics.☆15May 18, 2023Updated 2 years ago
- Sigma rules converted for direct use with Zircolite☆14Updated this week
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year
- ☆21Nov 19, 2025Updated 2 months ago
- Windows Event Log "Microsoft-Windows-Partition%4Diagnostic.evtx" parser and devices' VSNs extractor.☆20Nov 28, 2023Updated 2 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆86Dec 17, 2025Updated last month
- PyVelociraptor contains the python bindings for the Velociraptor API.☆21Updated this week
- Sigma detection rules for hunting with the threathunting-keywords project☆58Mar 2, 2025Updated 11 months ago
- pySigma Elasticsearch backend☆64Updated this week
- The Sigma command line interface based on pySigma☆176Feb 5, 2026Updated last week
- Open IOC sharing platform☆66Jan 1, 2026Updated last month
- This repository contains OpenIOC rules to aid in hunting for indicators of compromise and TTPs focused on Advanced Persistent Threat grou…☆26Oct 3, 2023Updated 2 years ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆35Jan 8, 2026Updated last month
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)☆527Feb 5, 2026Updated last week
- BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.☆32Jan 1, 2020Updated 6 years ago
- A DFIR tool to analyze artifacts on macOS☆35Jan 18, 2021Updated 5 years ago
- This crate provides functions for working with IPv4 CIDRs and IPv6 CIDRs.☆33Dec 26, 2025Updated last month
- SIEGMA - Transform Sigma rules into SIEM consumables☆159Mar 10, 2025Updated 11 months ago
- Sigma rule specification☆172Feb 5, 2026Updated last week
- This repo contains a list of aws security related talks.☆12Dec 5, 2017Updated 8 years ago
- A standard-derived suite of cryptography libraries for the TI-84+ CE graphing calculator.☆14Jan 24, 2026Updated 3 weeks ago
- CWE-1003 日本語訳☆10Feb 16, 2023Updated 2 years ago
- The Eventlog Compendium is the go-to resource for understanding Windows Event Logs.☆51Apr 22, 2025Updated 9 months ago
- A Go implementation and parser for Sigma rules.☆95May 15, 2025Updated 8 months ago
- An Android Application for making VoIP calls over FreeSWITCH server☆12Jun 4, 2015Updated 10 years ago
- Wireless Network Programming - The Linux Way☆10Jan 19, 2016Updated 10 years ago
- QubesOS dom0 automation in Python☆12Aug 3, 2017Updated 8 years ago
- This repository contains the code snippets used in "LLM Prompt Engineering For Developers"☆12Apr 22, 2024Updated last year
- Custom Queries, Dashboards, and HIPs Rules☆10Jan 13, 2018Updated 8 years ago
- Shell wrapper with keylogger (local log or syslog)☆13Nov 1, 2017Updated 8 years ago
- CLI generator for Velociraptor offline collector☆15Oct 10, 2025Updated 4 months ago
- An example of how a driver can register a handle creation callback.☆16Jun 12, 2023Updated 2 years ago
- Powershell Scripts☆13Aug 26, 2024Updated last year
- doesnt work and wont work on it anymore☆10Jul 8, 2024Updated last year
- Python CLI covering the FileScan.IO API - enabling automatic interaction with www.filescan.io or private instances☆14Jul 15, 2025Updated 6 months ago
- ☆13Aug 11, 2018Updated 7 years ago
- Encrypt any C# binary or bin file☆12Aug 1, 2024Updated last year
- Disk Image Mounting Script☆11Jan 22, 2026Updated 3 weeks ago