blookot / elastic-releasesLinks
Listing releases of the Elastic stack with new features and references
☆19Updated last month
Alternatives and similar repositories for elastic-releases
Users that are interested in elastic-releases are comparing it to the libraries listed below
Sorting:
- Converts Netwitness log parser configuration to Logstash configuration☆20Updated 5 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 3 weeks ago
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆24Updated 9 months ago
- Command line tool used for generating events corpus dynamically given a specific integration☆23Updated 9 months ago
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 3 years ago
- ☆13Updated 2 months ago
- ☆14Updated this week
- ☆37Updated last week
- Query.AI plugin for Kibana☆13Updated 6 years ago
- Kestrel Jupyter Notebook Kernel☆10Updated 2 years ago
- Elastic Security Documentation☆92Updated this week
- Using QRadar API☆20Updated 7 years ago
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Updated 5 years ago
- SIEM Logstash parsing for more than hundred technologies☆188Updated last week
- Notes for High Availability MISP in AWS☆19Updated 6 years ago
- ☆13Updated 3 years ago
- TAXII Server supporting the 2.1 spec.☆20Updated 5 years ago
- List of sigma for a variety of threats for multiple log sources.☆13Updated 7 years ago
- Analyze Zeek IDS data with ksqlDB running on Confluent Platform via Docker on your laptop. Or spin up an arbitrary number of AWS hosts, …☆11Updated 4 years ago
- OASIS TC Open Repository: TAXII 2 Client Library Written in Python☆119Updated last year
- A Python library for handling TAXII Messages invoking TAXII Services.☆72Updated 4 years ago
- Web UI for testing Elastic Beats processors☆18Updated this week
- OASIS TC Open Repository: Validator for STIX 2.0 JSON normative requirements and best practices☆59Updated 4 months ago
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 5 years ago
- Zeek support for Community ID flow hashing.☆37Updated 2 years ago
- The Security Analyst’s Guide to Suricata☆60Updated 7 months ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆36Updated 3 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 4 years ago
- MineMeld nodes for MISP☆19Updated last year
- ☆38Updated last year