airbus-cyber / graylog-plugin-alert-wizardLinks
Alert Wizard plugin for Graylog to manage the alert rules
☆49Updated this week
Alternatives and similar repositories for graylog-plugin-alert-wizard
Users that are interested in graylog-plugin-alert-wizard are comparing it to the libraries listed below
Sorting:
- Alert notification plugin for Graylog to generate log messages from alerts☆27Updated this week
- Alert condition plugin for Graylog to perform aggregation☆21Updated 3 years ago
- Fortinet products logs to Elasticsearch☆101Updated last week
- SIEM Logstash parsing for more than hundred technologies☆192Updated this week
- GrayLog2 QuickValuesPlus Widget☆22Updated 7 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆43Updated 2 weeks ago
- Alert condition plugin for Graylog to perform correlation☆28Updated 3 weeks ago
- Useful scripts for those administering Wazuh☆90Updated this week
- ☆23Updated 6 years ago
- Wazuh - Splunk App☆56Updated last year
- Documentation of Cortex☆174Updated 2 years ago
- Contains Logstash related content including tons of Logstash configurations☆254Updated 4 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 4 years ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated 2 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆108Updated last year
- Convert Sigma rules to Wazuh rules☆73Updated 3 months ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆71Updated 4 years ago
- Simple integration script for 3rd party systems such as SIEMs. Offers command line, file or syslog output in CEF, JSON or key-value pair …☆137Updated 2 years ago
- Elastic Beat for fetching and shipping Office 365 audit events☆68Updated 5 years ago
- Zeek (formerly Bro) Network Security Monitor package for pfSense router/firewall☆47Updated 4 years ago
- Docker configurations for TheHive, Cortex and 3rd party tools☆128Updated 3 years ago
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆155Updated last year
- ☆143Updated last month
- Docker image for MISP☆137Updated this week
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆75Updated 6 years ago
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆24Updated 11 months ago
- A curated list of awesome things related to TheHive & Cortex☆182Updated 4 years ago
- Elastic TIP is a python tool which automates the process of aggregating Threat Intelligence and ingesting the intelligence into a common …☆28Updated last year
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 3 years ago