cameling / logminerLinks
Mine patterns from logs
☆27Updated 8 years ago
Alternatives and similar repositories for logminer
Users that are interested in logminer are comparing it to the libraries listed below
Sorting:
- Simple parser for Splunk Processing Language (SPL) written in Python.☆35Updated 7 years ago
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 8 years ago
- Convert Splunk SPL to Elasticsearch DSL with pegjs☆13Updated 3 years ago
- Open-source framework to detect outliers in Elasticsearch events☆209Updated 2 years ago
- Query.AI plugin for Kibana☆13Updated 5 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 9 years ago
- Apache Metron☆60Updated 4 years ago
- Elastic Search Processing Language☆49Updated 8 years ago
- Extensible set of Storm topologies and topology attributes for streaming, enriching, indexing, and storing telemetry in Hadoop.☆133Updated last year
- ES索引的维护脚本, 每天close delete reallocate optimize索引☆23Updated 6 years ago
- Analysis of HTTP traffic and detection of anomalous user behavior in allowed actions. UEBA system.☆24Updated 2 years ago
- User interface for OpenSOC☆100Updated 10 years ago
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 5 years ago
- ☆41Updated 2 years ago
- ☆35Updated 4 years ago
- Sankey diagram for Kibana visualize.☆31Updated 8 months ago
- Anomaly detection framework @ PayPal☆108Updated 5 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- Suricata rule and intel index☆31Updated last month
- An open source pcap packet and NetFlow file analysis tool using Hadoop MapReduce and Hive.☆44Updated 12 years ago
- Threat Mapping Catalogue☆17Updated 4 years ago
- Bluekeep detection rule by using Apache Flink CEP (Complex Event Processing) Library and Markov Chain.☆9Updated 5 years ago
- Elasticsearch querying library☆20Updated 6 years ago
- Scalable stream processing platform for advanced realtime analytics on top of Kafka and Spark. LogIsland also supports MQTT and Kafka Str…☆108Updated last year
- SysFlow documentation and issues tracker☆46Updated 10 months ago
- Easy parsing of Apache HTTPD and NGINX access logs with Java, Hadoop, Hive, Flink, Beam, Storm, Drill, ...☆160Updated this week
- Anomaly detection for streaming time series, featuring automated model selection.☆209Updated last year
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- A Java library for handling TAXII Messages and invoking TAXII Services.☆20Updated 6 years ago
- A machine learning plugin in Open Distro for real time anomaly detection on streaming data.☆80Updated 3 years ago