The Sigma command line interface based on pySigma
☆190Jun 15, 2026Updated 2 weeks ago
Alternatives and similar repositories for sigma-cli
Users that are interested in sigma-cli are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)☆568Updated this week
- pySigma Elasticsearch backend☆71Jun 22, 2026Updated last week
- pySigma Splunk backend☆43Mar 22, 2026Updated 3 months ago
- Sigma rule specification☆195Jun 9, 2026Updated 2 weeks ago
- pySigma Cookiecutter backend template☆25Sep 17, 2025Updated 9 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆92Mar 11, 2026Updated 3 months ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆95Nov 3, 2025Updated 7 months ago
- Ansible playbook to convert Sigma rules to ElastAlert rules☆10Feb 5, 2021Updated 5 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆12Jul 1, 2021Updated 4 years ago
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆827May 30, 2026Updated 3 weeks ago
- Indicators of compromise from to analysis and research by Nextron Threat Research team☆12Jun 2, 2026Updated 3 weeks ago
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year
- ☆16Aug 29, 2025Updated 10 months ago
- simple webapp for converting sigma rules into siem queries using the pySigma library☆50Sep 1, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Sigma rules converted for direct use with Zircolite☆15Updated this week
- An opensource sigma conversion tool built using pysigma☆170Jun 22, 2026Updated last week
- Bring Your Own Mitre Att&ck © Matrix !☆13Oct 19, 2023Updated 2 years ago
- ☆46Nov 28, 2025Updated 7 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆160Mar 10, 2025Updated last year
- Legacy Sigma Tools (sigmac etc.)☆17May 7, 2023Updated 3 years ago
- SigmaHQ pySigma CrowdStrike processing pipeline☆32Jun 14, 2026Updated 2 weeks ago
- Main Sigma Rule Repository☆10,624Jun 19, 2026Updated last week
- Resources To Learn And Understand SIGMA Rules☆185Feb 14, 2023Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Detection Ideas & Rules repository.☆179Sep 10, 2021Updated 4 years ago
- 🐍 High-performance, multi-threaded YARA & IOC scanner☆332Jun 22, 2026Updated last week
- Log Entry to Sigma Rule Converter☆107Mar 3, 2022Updated 4 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32May 21, 2026Updated last month
- Splunk Content Control Tool☆134May 6, 2026Updated last month
- A repository of my own Sigma detection rules.☆165Nov 25, 2025Updated 7 months ago
- Postfix Add-on for Splunk (Compliant with the Mail CIM model)☆11Mar 18, 2021Updated 5 years ago
- Convert Sigma rules to SIEM queries, directly in your browser.☆119Jun 20, 2026Updated last week
- Detection Rule License (DRL)☆21Dec 27, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- This is a repo for fetching Applocker event log by parsing the win-event log☆29Aug 6, 2022Updated 3 years ago
- Event Tracing For Windows (ETW) Resources☆431Oct 30, 2025Updated 8 months ago
- Windows Events Attack Samples☆2,580Jan 24, 2023Updated 3 years ago
- Documentation and scripts to properly enable Windows event logs.☆708Oct 3, 2025Updated 8 months ago
- Investigate suspicious activity by visualizing Sysmon's event log☆431Dec 22, 2023Updated 2 years ago
- Klara docker compose☆11May 19, 2020Updated 6 years ago
- ☆18Oct 13, 2025Updated 8 months ago