airbus-cyber / graylog-plugin-correlation-countLinks
Alert condition plugin for Graylog to perform correlation
☆28Updated 2 weeks ago
Alternatives and similar repositories for graylog-plugin-correlation-count
Users that are interested in graylog-plugin-correlation-count are comparing it to the libraries listed below
Sorting:
- Alert condition plugin for Graylog to perform aggregation☆21Updated 3 years ago
- Alert notification plugin for Graylog to generate log messages from alerts☆27Updated 2 weeks ago
- Alert Wizard plugin for Graylog to manage the alert rules☆50Updated 2 weeks ago
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆75Updated 6 years ago
- ☆22Updated 6 years ago
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆17Updated 4 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 4 years ago
- Example configuration files for Logstash☆44Updated 6 years ago
- How to send structured Snort IDS alert logs into Graylog☆27Updated 3 months ago
- Official Palo Alto Networks MineMeld docker☆17Updated 5 years ago
- MineMeld nodes for MISP☆19Updated 2 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆71Updated 4 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆43Updated last month
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆172Updated 2 years ago
- Elastic Beat for fetching and shipping Office 365 audit events☆68Updated 5 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Wazuh - Splunk App☆56Updated last year
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆28Updated 5 years ago
- SIEM Logstash parsing for more than hundred technologies☆193Updated last week
- Useful scripts for those administering Wazuh☆91Updated 3 weeks ago
- Graylog Processing Pipeline functions to enrich log messages with IoC information from threat intelligence databases☆155Updated last year
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆27Updated 4 years ago
- Message filter plugin to reverse lookup the source field☆10Updated 8 years ago
- Fortinet products logs to Elasticsearch☆102Updated 2 weeks ago
- ☆12Updated 5 years ago
- Experimental DNS logs pipeline based on Pi-hole dnsmasq logs, ELK stack, and Filebeat. Sample configs included.☆29Updated 2 years ago
- ☆22Updated 3 years ago
- GrayLog2 QuickValuesPlus Widget☆22Updated 7 years ago
- Fortigate Log Parser☆16Updated last month
- A shell script to download malware domains from various sources, and configuring unbound DNS config file to be used as a local recursive …☆19Updated 11 years ago