airbus-cyber / graylog-plugin-correlation-countLinks
Alert condition plugin for Graylog to perform correlation
☆28Updated this week
Alternatives and similar repositories for graylog-plugin-correlation-count
Users that are interested in graylog-plugin-correlation-count are comparing it to the libraries listed below
Sorting:
- Alert condition plugin for Graylog to perform aggregation☆21Updated 3 years ago
- Alert notification plugin for Graylog to generate log messages from alerts☆27Updated this week
- Alert Wizard plugin for Graylog to manage the alert rules☆49Updated this week
- ☆23Updated 6 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆43Updated 2 weeks ago
- Example configuration files for Logstash☆44Updated 6 years ago
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆75Updated 6 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 4 years ago
- SIEM Logstash parsing for more than hundred technologies☆192Updated this week
- ☆12Updated 5 years ago
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆27Updated 4 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆71Updated 4 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆28Updated 5 years ago
- Wazuh - Splunk App☆56Updated last year
- MineMeld nodes for MISP☆19Updated last year
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆17Updated 4 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆171Updated 2 years ago
- Fortinet products logs to Elasticsearch☆101Updated this week
- Official Palo Alto Networks MineMeld docker☆17Updated 5 years ago
- Useful scripts for those administering Wazuh☆90Updated this week
- Experimental DNS logs pipeline based on Pi-hole dnsmasq logs, ELK stack, and Filebeat. Sample configs included.☆30Updated 2 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- How to send structured Snort IDS alert logs into Graylog☆27Updated 2 months ago
- Scripts to automatically import threat intel into QRadar☆14Updated 6 years ago
- ☆38Updated 6 years ago
- Zeek (formerly Bro) Network Security Monitor package for pfSense router/firewall☆47Updated 4 years ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆94Updated 3 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆108Updated last year
- PANW Firewall Visualisations using Elastic Stack☆91Updated 2 years ago
- Elastic Beat for fetching and shipping Office 365 audit events☆68Updated 5 years ago