airbus-cyber / graylog-plugin-correlation-countLinks
Alert condition plugin for Graylog to perform correlation
☆26Updated 2 months ago
Alternatives and similar repositories for graylog-plugin-correlation-count
Users that are interested in graylog-plugin-correlation-count are comparing it to the libraries listed below
Sorting:
- Alert condition plugin for Graylog to perform aggregation☆20Updated 2 years ago
- Alert notification plugin for Graylog to generate log messages from alerts☆25Updated last month
- Alert Wizard plugin for Graylog to manage the alert rules☆49Updated last month
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆73Updated 6 years ago
- Example configuration files for Logstash☆44Updated 5 years ago
- ☆23Updated 6 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 4 years ago
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆16Updated 3 years ago
- Fortinet products logs to Elasticsearch☆98Updated last week
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 5 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆41Updated 2 years ago
- SIEM Logstash parsing for more than hundred technologies☆187Updated last month
- Wazuh - Splunk App☆55Updated 10 months ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆68Updated 4 years ago
- ☆17Updated 3 years ago
- ☆12Updated 5 years ago
- PANW Firewall Visualisations using Elastic Stack☆91Updated 2 years ago
- Logstash Configuration for Linux Logs (Authentication, Apache, Mail)☆93Updated 5 years ago
- MineMeld nodes for MISP☆19Updated last year
- Useful scripts for those administering Wazuh☆84Updated last month
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- ☆38Updated 5 years ago
- This repository bundles various utilities and scripts I built for use with IBM QRadar SIEM☆16Updated last month
- Elastic Beat for fetching and shipping Office 365 audit events☆67Updated 4 years ago
- Experimental DNS logs pipeline based on Pi-hole dnsmasq logs, ELK stack, and Filebeat. Sample configs included.☆30Updated last year
- Scripts to automatically import threat intel into QRadar☆12Updated 6 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆171Updated 2 years ago
- Palo Alto Networks App for Splunk leverages the data visibility provided by Palo Alto Networks next-generation firewalls and endpoint sec…☆107Updated 10 months ago
- GrayLog2 QuickValuesPlus Widget☆22Updated 6 years ago
- Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)☆106Updated last year