airbus-cyber / graylog-plugin-alert-wizard
Alert Wizard plugin for Graylog to manage the alert rules
☆48Updated 3 weeks ago
Alternatives and similar repositories for graylog-plugin-alert-wizard:
Users that are interested in graylog-plugin-alert-wizard are comparing it to the libraries listed below
- Alert notification plugin for Graylog to generate log messages from alerts☆25Updated this week
- Alert condition plugin for Graylog to perform aggregation☆20Updated 2 years ago
- Alert condition plugin for Graylog to perform correlation☆25Updated 3 months ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆64Updated 3 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- Simple integration script for 3rd party systems such as SIEMs. Offers command line, file or syslog output in CEF, JSON or key-value pair …☆131Updated last year
- Useful scripts for those administering Wazuh☆81Updated 2 months ago
- Convert Sigma rules to Wazuh rules☆64Updated 11 months ago
- Fortinet products logs to Elasticsearch☆98Updated 7 months ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆40Updated 2 years ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year
- Cisco eStreamer client☆24Updated 2 years ago
- Wazuh - Splunk App☆53Updated 6 months ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated 3 weeks ago
- Elastic Beat for fetching and shipping Office 365 audit events☆67Updated 4 years ago
- IRIS Module for Wazuh-Indexer Searching☆10Updated last year
- Contains Logstash related content including tons of Logstash configurations☆253Updated 3 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆149Updated last month
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- ☆31Updated 3 years ago
- ☆17Updated 3 years ago
- Ingest Nessus files into Elasticsearch using PowerShell!☆21Updated 11 months ago
- Leverage Sophos Central API☆27Updated last year
- MineMeld nodes for MISP☆19Updated last year
- Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.☆81Updated last week
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆66Updated 7 years ago
- Docker image for MISP☆125Updated 2 weeks ago
- SIEM Logstash parsing for more than hundred technologies☆184Updated last week
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆74Updated 5 years ago