dLoProdz / OSSIEMLinks
Open Source SIEM Stack
☆29Updated last year
Alternatives and similar repositories for OSSIEM
Users that are interested in OSSIEM are comparing it to the libraries listed below
Sorting:
- SOCFortress CoPilot☆417Updated this week
- Open Source SIEM Stack☆136Updated last week
- Advanced Wazuh Rules for more accurate threat detection. Feel free to implement within your own Wazuh environment, contribute, or fork!☆1,169Updated last week
- A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.☆412Updated 2 months ago
- Decoders and Rules for Fortigate in Wazuh☆56Updated last year
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆31Updated last year
- A production ready Dockered MISP☆298Updated this week
- PowerShell Digital Forensics & Incident Response Scripts.☆719Updated 2 months ago
- This project is specifically made for brand new directory and ease their creation with all security rules in place.☆123Updated 3 weeks ago
- Protect your data in minutes !☆125Updated last year
- Open Source Security Operations Center Documentation☆202Updated 5 months ago
- Useful scripts for those administering Wazuh☆88Updated this week
- Hardening Active Directory version 2☆362Updated this week
- ☆40Updated 2 years ago
- ☆218Updated last year
- This repository contains Community and Field contributed content for LogScale☆304Updated last week
- A Windows CIS benchmark policy compliance auditor☆59Updated last year
- A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.☆743Updated last month
- A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 D…☆750Updated 3 months ago
- Enterprise-ready SIEM, SOAR and Compliance powered by real-time correlation and threat intelligence.☆485Updated this week
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆564Updated last week
- Repository of SentinelOne Deep Visibility queries.☆134Updated 4 years ago
- MCP Server for Wazuh SIEM☆148Updated this week
- PowerShell-based Automation of Defender for Endpoint☆181Updated 5 months ago
- Tools to help you with daily tasks of configuring/debugging/monitoring Fortinet products - Fortigate, FortiAnalyzer, Fortimanager. I do n…☆123Updated 2 weeks ago
- Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-t…☆1,274Updated this week
- Playbooks for SOC Analysts☆635Updated 3 years ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆790Updated 2 weeks ago
- This module allows the creation of password expiry emails for users, managers, administrators, and security according to defined template…☆156Updated 7 months ago
- Content and collateral for the Microsoft Sentinel SOC 101 series☆202Updated last year