airbus-cyber / graylog-plugin-alert-wizard
Alert Wizard plugin for Graylog to manage the alert rules
☆47Updated last month
Alternatives and similar repositories for graylog-plugin-alert-wizard:
Users that are interested in graylog-plugin-alert-wizard are comparing it to the libraries listed below
- Alert notification plugin for Graylog to generate log messages from alerts☆24Updated last month
- Alert condition plugin for Graylog to perform correlation☆25Updated 2 months ago
- Alert condition plugin for Graylog to perform aggregation☆20Updated 2 years ago
- Wazuh - Splunk App☆52Updated 5 months ago
- Fortinet products logs to Elasticsearch☆95Updated 6 months ago
- Useful scripts for those administering Wazuh☆80Updated last month
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆64Updated 3 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆40Updated 2 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- SIEM Logstash parsing for more than hundred technologies☆183Updated 2 weeks ago
- ☆23Updated 5 years ago
- Tools for Wazuh by Juan C. Tello☆14Updated 3 years ago
- Example configuration files for Logstash☆44Updated 5 years ago
- ☆17Updated 3 years ago
- ☆31Updated 3 years ago
- Convert Sigma rules to Wazuh rules☆63Updated 10 months ago
- Zeek (formerly Bro) Network Security Monitor package for pfSense router/firewall☆44Updated 3 years ago
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆74Updated 5 years ago
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆153Updated 11 months ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year
- Initial Revision☆16Updated 6 years ago
- GrayLog2 QuickValuesPlus Widget☆22Updated 6 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆102Updated 9 months ago
- Leverage Sophos Central API☆27Updated last year
- Docker image for MISP☆123Updated last month
- Experimental DNS logs pipeline based on Pi-hole dnsmasq logs, ELK stack, and Filebeat. Sample configs included.☆30Updated last year
- Elastic Beat for fetching and shipping Office 365 audit events☆66Updated 4 years ago
- Convert snort IPS signatures to FortiGate custom IPS signature syntax.☆39Updated last month
- Cisco eStreamer client☆25Updated 2 years ago