corelight / zeek2esLinks
A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for further processing!
☆38Updated 3 years ago
Alternatives and similar repositories for zeek2es
Users that are interested in zeek2es are comparing it to the libraries listed below
Sorting:
- ☆35Updated 4 years ago
- Automatic detection engineering technical state compliance☆55Updated last year
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- S2AN - Mapper of Sigma/Suricata Rules/Signatures ➡️ MITRE ATT&CK Navigator☆89Updated 2 years ago
- ☆55Updated 3 years ago
- A CALDERA plugin☆79Updated last month
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 5 years ago
- A tool to assess data quality, built on top of the awesome OSSEM.☆79Updated 3 years ago
- Generic Signature Format for SIEM Systems☆14Updated 4 years ago
- Searches for Insider Threat Hunting☆30Updated 6 years ago
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆69Updated last month
- Sightings Ecosystem gives cyber defenders visibility into what adversaries actually do in the wild. With your help, we are tracking MITRE…☆37Updated 6 months ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆53Updated 3 years ago
- This program exports MITRE ATT&CK framework in ELK dashboard☆79Updated 2 years ago