An implementation of a Windows Event Collector server running on GNU/Linux.
☆97Jan 27, 2026Updated 4 months ago
Alternatives and similar repositories for openwec
Users that are interested in openwec are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- gmsad manages Active Directory group Managed Service Account (gMSA) on Linux☆46Dec 19, 2024Updated last year
- Bring Your Own Mitre Att&ck © Matrix !☆13Oct 19, 2023Updated 2 years ago
- a tiny program to consume from ETW providers for research☆55Jan 4, 2025Updated last year
- go client for the wazuh rest api☆13Apr 22, 2026Updated last month
- Private Search Set (PSS) is an extension to standard Bloom filter or a standalone hash file to describe and share private set.☆16Jan 10, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆37Nov 9, 2022Updated 3 years ago
- ☆58Oct 12, 2024Updated last year
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year
- A Rust library for parsing and evaluating Sigma rules☆23Nov 26, 2025Updated 6 months ago
- The home of the SDDLMaker☆29Jan 13, 2025Updated last year
- Transform Linux Audit logs for SIEM usage☆836Jun 6, 2026Updated last week
- Osquery Packs we use for customer security hardening☆12Jun 30, 2025Updated 11 months ago
- http://moaistory.blogspot.com/2018/10/winsearchdbanalyzer.html☆132Jul 20, 2024Updated last year
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆822May 30, 2026Updated 2 weeks ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32May 21, 2026Updated 3 weeks ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆91Mar 11, 2026Updated 3 months ago
- ReWrite of AChoir in Go for Cross Platform forensic artifact collection and processing☆42May 18, 2026Updated 3 weeks ago
- PowerShell scripts for fast Windows Event Collector configuration with Palantir toolset☆22May 21, 2022Updated 4 years ago
- Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.☆629May 21, 2026Updated 3 weeks ago
- Open-source cross-platform endpoint detection engine for Windows, macOS, and Linux using ETW, ESF, eBPF, Sigma, YARA, IOCs, and ECS NDJSO…☆377Updated this week
- Burp Suite Pro extension☆11May 26, 2017Updated 9 years ago
- ☆40Nov 20, 2025Updated 6 months ago
- pySigma Splunk backend☆43Mar 22, 2026Updated 2 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨☆72Updated this week
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆54Jul 13, 2023Updated 2 years ago
- IR drill plateform☆24Jul 29, 2025Updated 10 months ago
- simple webapp for converting sigma rules into siem queries using the pySigma library☆50Sep 1, 2023Updated 2 years ago
- Repository to provide files related to our blog articles.☆16May 26, 2025Updated last year
- Documentation and scripts to properly enable Windows event logs.☆706Oct 3, 2025Updated 8 months ago
- Nasp is a lightweight library to expand service mesh capabilities to non-cloud environments☆40Nov 25, 2024Updated last year
- AxoSyslog - the scalable security data processor☆112Jun 9, 2026Updated last week
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆219Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Threat-hunting tool for Linux☆1,075Jun 9, 2026Updated last week
- Cyber threat intelligence crates for Rust☆16Jan 22, 2024Updated 2 years ago
- Fluentd plugin to route records based on Kubernetes labels and namespace☆13Apr 11, 2025Updated last year
- Sum the time-tracking "/spend" commands of commit messages.☆15Apr 6, 2024Updated 2 years ago
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)☆566Updated this week
- This script and accompanying files will allow system administrators to automatically deploy Microsoft Local Administrator Password Soluti…☆13Aug 18, 2017Updated 8 years ago
- Volatility, on Docker 🐳☆41Nov 20, 2025Updated 6 months ago