airbus-cyber / graylog-plugin-correlation-countLinks
Alert condition plugin for Graylog to perform correlation
☆27Updated 5 months ago
Alternatives and similar repositories for graylog-plugin-correlation-count
Users that are interested in graylog-plugin-correlation-count are comparing it to the libraries listed below
Sorting:
- Alert condition plugin for Graylog to perform aggregation☆21Updated 2 years ago
- Alert notification plugin for Graylog to generate log messages from alerts☆26Updated 2 months ago
- Alert Wizard plugin for Graylog to manage the alert rules☆49Updated this week
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆74Updated 6 years ago
- ☆23Updated 6 years ago
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆17Updated 4 years ago
- SIEM Logstash parsing for more than hundred technologies☆188Updated this week
- MineMeld nodes for MISP☆19Updated last year
- Fortinet products logs to Elasticsearch☆98Updated last week
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆28Updated 5 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 4 years ago
- Wazuh - Splunk App☆56Updated last year
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆70Updated 4 years ago
- Example configuration files for Logstash☆44Updated 6 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆171Updated 2 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆43Updated last month
- ☆12Updated 5 years ago
- PANW Firewall Visualisations using Elastic Stack☆90Updated 2 years ago
- Useful scripts for those administering Wazuh☆87Updated last week
- GrayLog2 QuickValuesPlus Widget☆22Updated 6 years ago
- ☆19Updated 3 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Mass Suricata rules creator, from a list of domain☆14Updated 7 years ago
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆27Updated 4 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆36Updated 5 years ago
- A website and framework for testing NIDS detection☆57Updated 4 years ago
- Logstash Configuration for Linux Logs (Authentication, Apache, Mail)☆92Updated 6 years ago
- Official Palo Alto Networks MineMeld docker☆17Updated 5 years ago
- The Project can be used to integrate QRadar with MISP Threat Sharing Platform☆40Updated 3 years ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆94Updated 3 years ago