blookot / elastic-releases
Listing releases of the Elastic stack with new features and references
☆17Updated last year
Alternatives and similar repositories for elastic-releases:
Users that are interested in elastic-releases are comparing it to the libraries listed below
- Converts Netwitness log parser configuration to Logstash configuration☆20Updated 4 years ago
- ☆15Updated 6 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 months ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Updated 2 years ago
- Detection-as-Code CI/CD pipeline for modern security tools (SIEM, EDR, XDR, ...)☆17Updated last week
- Data shipper for the Elastic Agent - single, unified way to add monitoring for logs, metrics, and other types of data to a host.☆9Updated last year
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- A collection of awesome resources built for and around the Splunk Phantom platform.☆15Updated 4 years ago
- Suricata rule and intel index☆30Updated last month
- pcapdj - dispatch pcap files☆46Updated 4 years ago
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 4 years ago
- ☆12Updated 4 years ago
- Command line tool used for generating events corpus dynamically given a specific integration☆23Updated last month
- Using QRadar API☆20Updated 6 years ago
- Incident Response Network Tools☆24Updated 3 years ago
- Zeek package for tracking long connections to report them before they have completed.☆29Updated 2 years ago
- Script to create MITRE ATT&CK Navigator layers from the annotated detection rules in Elastic Security (Kibana).☆20Updated last year
- Zeek support for Community ID flow hashing.☆35Updated last year
- JSON Tools Technology Add-On for Splunk☆10Updated 3 years ago
- Setting up a training environment for MISP☆11Updated 2 years ago
- Monitor device events using QRadar☆22Updated last year
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- CyCAT.org API back-end server including crawlers☆30Updated last year
- A Python implementation of the Community ID flow hashing standard☆23Updated last year
- ☆23Updated 4 years ago
- ☆13Updated 2 years ago
- A configurable rule-based labeling tool for network flow files.☆16Updated last year
- Firepit - STIX Columnar Storage☆16Updated 7 months ago
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆22Updated 2 years ago
- The CRATOS proxy API integrates with your MISP instance and allows to extract indicators that can be consumed by security components such…☆13Updated this week