cameling / logminerLinks
Mine patterns from logs
☆27Updated 9 years ago
Alternatives and similar repositories for logminer
Users that are interested in logminer are comparing it to the libraries listed below
Sorting:
- Simple parser for Splunk Processing Language (SPL) written in Python.☆35Updated 7 years ago
- Open-source framework to detect outliers in Elasticsearch events☆210Updated 2 years ago
- Convert Splunk SPL to Elasticsearch DSL with pegjs☆13Updated 3 years ago
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 8 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 9 years ago
- Query.AI plugin for Kibana☆13Updated 6 years ago
- Apache Metron☆60Updated 5 years ago
- Analysis of HTTP traffic and detection of anomalous user behavior in allowed actions. UEBA system.☆24Updated 2 years ago
- Elastic Search Processing Language☆50Updated 9 years ago
- Anomaly detection for streaming time series, featuring automated model selection.☆210Updated last year
- Threat Mapping Catalogue☆18Updated 4 years ago
- Suricata rule and intel index☆33Updated last month
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 5 years ago
- Extensible set of Storm topologies and topology attributes for streaming, enriching, indexing, and storing telemetry in Hadoop.☆134Updated last year
- ☆42Updated 3 years ago
- Rule sets for Sagan☆106Updated 4 years ago
- User interface for OpenSOC☆100Updated 10 years ago
- Debian and Red Hat packaging for SIE DNS sensor☆15Updated 2 years ago
- An anomaly-based intrusion detection system.☆86Updated 3 years ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆31Updated 5 years ago
- Mapping NSM rules to MITRE ATT&CK☆73Updated 5 years ago
- SysFlow documentation and issues tracker☆46Updated last year
- Graph Representation of MITRE ATT&CK's CTI data☆50Updated 6 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆38Updated 3 years ago
- User and Entity Behavior Analytics by deep learning☆117Updated 4 years ago
- Sankey diagram for Kibana visualize.☆32Updated last year
- 威胁检测规则集☆15Updated 6 years ago
- 基于Strom的日志实时流量分析主动防御(CCFirewall)系统☆70Updated 8 years ago
- Utility for parsing Bro log files into CSV or JSON format☆42Updated 2 years ago
- Vulnerability Assessment Module - OpenVas with Elastic stack using VulnWhisperer☆19Updated 6 years ago