airbus-cyber / graylog-plugin-correlation-countLinks
Alert condition plugin for Graylog to perform correlation
☆27Updated 4 months ago
Alternatives and similar repositories for graylog-plugin-correlation-count
Users that are interested in graylog-plugin-correlation-count are comparing it to the libraries listed below
Sorting:
- Alert condition plugin for Graylog to perform aggregation☆21Updated 2 years ago
- Alert notification plugin for Graylog to generate log messages from alerts☆26Updated last month
- Alert Wizard plugin for Graylog to manage the alert rules☆50Updated last month
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆74Updated 6 years ago
- Example configuration files for Logstash☆44Updated 5 years ago
- Fortinet products logs to Elasticsearch☆98Updated last week
- SIEM Logstash parsing for more than hundred technologies☆188Updated this week
- Logstash Configuration for Linux Logs (Authentication, Apache, Mail)☆93Updated 6 years ago
- ☆23Updated 6 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 4 years ago
- PANW Firewall Visualisations using Elastic Stack☆90Updated 2 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆43Updated last month
- Experimental DNS logs pipeline based on Pi-hole dnsmasq logs, ELK stack, and Filebeat. Sample configs included.☆30Updated last year
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆70Updated 4 years ago
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆17Updated 3 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆28Updated 5 years ago
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆27Updated 4 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆34Updated 5 years ago
- Installation script for ELK stack to make life easy.☆69Updated 5 years ago
- ☆12Updated 5 years ago
- Wazuh - Splunk App☆56Updated last year
- ☆20Updated 2 months ago
- Contains Logstash related content including tons of Logstash configurations☆254Updated 4 years ago
- ☆19Updated 3 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆107Updated last year
- MineMeld nodes for MISP☆19Updated last year
- This repository bundles various utilities and scripts I built for use with IBM QRadar SIEM☆16Updated 3 months ago
- Zeek (formerly Bro) Network Security Monitor package for pfSense router/firewall☆47Updated 4 years ago
- Scripts to automatically import threat intel into QRadar☆12Updated 6 years ago
- Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook☆54Updated 5 years ago