SigmaHQ / pySigma-backend-elasticsearch
pySigma Elasticsearch backend
☆50Updated this week
Alternatives and similar repositories for pySigma-backend-elasticsearch:
Users that are interested in pySigma-backend-elasticsearch are comparing it to the libraries listed below
- The Sigma command line interface based on pySigma☆144Updated 3 weeks ago
- pySigma Splunk backend☆36Updated 3 weeks ago
- Forensic Artifact Collection Tool Matrix☆81Updated 3 months ago
- Elastic Security Labs releases☆57Updated 3 months ago
- ☆65Updated 2 weeks ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆74Updated 3 weeks ago
- An opensource sigma conversion tool built using pysigma☆115Updated last month
- Rules generated from our investigations.☆193Updated 3 months ago
- YARA rule analyzer to improve rule quality and performance☆96Updated last month
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆99Updated this week
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆76Updated last year
- ☆34Updated 2 months ago
- ☆84Updated this week
- A repository of my own Sigma detection rules.☆157Updated 5 months ago
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆156Updated this week
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆160Updated last year
- JPCERT/CC public YARA rules repository☆106Updated 2 months ago
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆67Updated 2 months ago
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated last year
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆139Updated 2 weeks ago
- A pySigma wrapper to manage detection rules.☆37Updated last month
- Sigma rules to share with the community☆118Updated 2 weeks ago
- Dettectinator - The Python library to your DeTT&CT YAML files.☆108Updated last month
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆82Updated last week
- Sample evtx files to use for testing hayabusa detection rules☆47Updated 3 months ago
- A specification and style guide for YARA rules☆45Updated 11 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- A repository to share publicly available Velociraptor detection content☆126Updated this week
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆131Updated 11 months ago
- BlackBerry Threat Research & Intelligence☆96Updated last year