chronicle / api-samples-python
Python samples and utilities for Chronicle APIs
☆77Updated this week
Related projects ⓘ
Alternatives and complementary repositories for api-samples-python
- ☆26Updated last month
- A CLI tool for managing Chronicle user workflows☆16Updated 6 months ago
- pySigma Cookiecutter backend template☆21Updated last week
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆49Updated 2 years ago
- Command line tool to interact with Chronicle's Config Based Normalizer (CBN) APIs.☆27Updated last year
- Recon Hunt Queries☆75Updated 3 years ago
- A community event for security researchers to share their favorite notebooks☆106Updated 9 months ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆50Updated 2 years ago
- The Infosec Community Definitive Guide to Jupyter Notebooks☆115Updated 4 years ago
- ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit l…☆145Updated last week
- Dettectinator - The Python library to your DeTT&CT YAML files.☆104Updated 2 weeks ago
- Cisco Orbital - Osquery queries by Talos☆123Updated 2 months ago
- A cross-platform baselining, threat hunting, and attack surface analysis tool for security teams.☆182Updated this week
- ☆99Updated 5 months ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆65Updated 8 months ago
- Extracts IoCs, TTPs and the relationships between them. Outputs a STIX 2.1 bundle.☆26Updated this week
- ☆31Updated 3 months ago
- Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as we…☆51Updated last year
- Synthetic Adversarial Log Objects: A Framework for synthentic log generation☆77Updated 10 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆141Updated last year
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆42Updated 2 weeks ago
- A Python library to help with some common threat hunting data analysis operations☆139Updated last year
- OSSEM Data Dictionaries☆59Updated 3 months ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆97Updated this week
- A lab environment for learning about MSTICPy☆36Updated last year
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆52Updated 2 years ago
- SigmaHQ pySigma CrowdStrike processing pipeline☆21Updated last month
- Collection of YARA-L 2.0 sample rules for the Chronicle Detection API☆316Updated last month
- Import specific data sources into the Sigma generic and open signature format.☆77Updated 2 years ago
- Splunk Content Control Tool☆91Updated this week