cameling / logminer
Mine patterns from logs
☆27Updated 8 years ago
Alternatives and similar repositories for logminer:
Users that are interested in logminer are comparing it to the libraries listed below
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 7 years ago
- Elastic Search Processing Language☆49Updated 8 years ago
- Convert Splunk SPL to Elasticsearch DSL with pegjs☆13Updated 2 years ago
- Simple parser for Splunk Processing Language (SPL) written in Python.☆35Updated 6 years ago
- Query.AI plugin for Kibana☆13Updated 5 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 8 years ago
- ES索引的维护脚本, 每天close delete reallocate optimize索引☆23Updated 5 years ago
- Parser for Splunk's Search Processing Language (SPL) syntax highlighting☆19Updated 5 years ago
- Open-source framework to detect outliers in Elasticsearch events☆208Updated last year
- Apache Metron Workshop Lab materials and instructions.☆35Updated 5 years ago
- Apache Metron☆59Updated 4 years ago
- Advanced Persistent Threat Detection Using Network Analysis☆22Updated 6 years ago
- Malice Yara Plugin☆30Updated 5 years ago
- User interface for OpenSOC☆100Updated 9 years ago
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 4 years ago
- Bro analyzer that detects Google's QUIC protocol☆10Updated 4 years ago
- Zeek script library for getting the effective TLD of a domain.☆13Updated 10 months ago
- Simple Python bindings for the Hyperscan project.☆20Updated 8 years ago
- ☆39Updated 2 years ago
- Script to create MITRE ATT&CK Navigator layers from the annotated detection rules in Elastic Security (Kibana).☆20Updated last year
- Code, commands, and chatter about Threat Hunting.☆35Updated 5 years ago
- Total Anomaly Detection System for software logs and traces☆10Updated 9 years ago
- A Java library for handling TAXII Messages and invoking TAXII Services.☆20Updated 5 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆34Updated 2 years ago
- A dsniff project using bro☆10Updated 9 years ago
- Anomaly detection and monitoring software☆20Updated 6 years ago
- Rule sets for Sagan☆102Updated 4 years ago
- Graph Representation of MITRE ATT&CK's CTI data☆48Updated 5 years ago
- Elastic-Grok-Script-Plugin is a provider of Grok ElasticSearch plug-in☆12Updated 8 years ago