The Sigma command line interface based on pySigma
☆181Feb 5, 2026Updated last month
Alternatives and similar repositories for sigma-cli
Users that are interested in sigma-cli are comparing it to the libraries listed below
Sorting:
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)☆535Updated this week
- pySigma Elasticsearch backend☆65Updated this week
- pySigma Splunk backend☆41Updated this week
- Sigma rule specification☆174Feb 5, 2026Updated last month
- pySigma Cookiecutter backend template☆24Sep 17, 2025Updated 6 months ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆87Mar 11, 2026Updated last week
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆92Nov 3, 2025Updated 4 months ago
- Ansible playbook to convert Sigma rules to ElastAlert rules☆10Feb 5, 2021Updated 5 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆12Jul 1, 2021Updated 4 years ago
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆791Updated this week
- Indicators of compromise from to analysis and research by Nextron Threat Research team☆12Sep 17, 2025Updated 6 months ago
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year
- ☆16Aug 29, 2025Updated 6 months ago
- simple webapp for converting sigma rules into siem queries using the pySigma library☆50Sep 1, 2023Updated 2 years ago
- Sigma rules converted for direct use with Zircolite☆14Updated this week
- An opensource sigma conversion tool built using pysigma☆163Feb 9, 2026Updated last month
- Bring Your Own Mitre Att&ck © Matrix !☆13Oct 19, 2023Updated 2 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆159Mar 10, 2025Updated last year
- SigmaHQ pySigma CrowdStrike processing pipeline☆28Nov 30, 2025Updated 3 months ago
- Legacy Sigma Tools (sigmac etc.)☆16May 7, 2023Updated 2 years ago
- Main Sigma Rule Repository☆10,203Updated this week
- Resources To Learn And Understand SIGMA Rules☆183Feb 14, 2023Updated 3 years ago
- 🐍 High-performance, multi-threaded YARA & IOC scanner☆280Updated this week
- ☆44Nov 28, 2025Updated 3 months ago
- Detection Ideas & Rules repository.☆178Sep 10, 2021Updated 4 years ago
- Log Entry to Sigma Rule Converter☆107Mar 3, 2022Updated 4 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆33Mar 9, 2022Updated 4 years ago
- Splunk Content Control Tool☆130Mar 5, 2026Updated 2 weeks ago
- A repository of my own Sigma detection rules.☆163Nov 25, 2025Updated 3 months ago
- Postfix Add-on for Splunk (Compliant with the Mail CIM model)☆11Mar 18, 2021Updated 5 years ago
- Convert Sigma rules to SIEM queries, directly in your browser.☆113Jan 24, 2026Updated last month
- Detection Rule License (DRL)☆21Dec 27, 2024Updated last year
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆74Jan 26, 2022Updated 4 years ago
- Event Tracing For Windows (ETW) Resources☆420Oct 30, 2025Updated 4 months ago
- Windows Events Attack Samples☆2,526Jan 24, 2023Updated 3 years ago
- Documentation and scripts to properly enable Windows event logs.☆673Oct 3, 2025Updated 5 months ago
- Investigate suspicious activity by visualizing Sysmon's event log☆430Dec 22, 2023Updated 2 years ago
- A simple tool designed to create Atomic Red Team tests with ease.☆50Mar 11, 2025Updated last year
- Klara docker compose☆11May 19, 2020Updated 5 years ago