OSSEC Decoder & Rulesets for Sysmon Events
☆15Jul 23, 2015Updated 10 years ago
Alternatives and similar repositories for Sysmon_OSSEC
Users that are interested in Sysmon_OSSEC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Feb 20, 2024Updated 2 years ago
- Time-Machine Dynamic Bulk Packet Recorder☆36Apr 21, 2025Updated last year
- V1.0☆14Aug 8, 2016Updated 9 years ago
- Currently not updated for WMIEvent module...☆263Feb 23, 2016Updated 10 years ago
- Process HTTP Pcaps With YARA☆108Jul 29, 2013Updated 12 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Suricata Extreme Performance Tuning guide☆213Mar 15, 2018Updated 8 years ago
- Volatility plugins☆12Feb 19, 2015Updated 11 years ago
- ☆11Oct 16, 2022Updated 3 years ago
- Scandiff is a PowerShell script to automate host discovery and scanning with nmap. After discovering and scanning hosts, scandiff perfor…☆18Oct 29, 2014Updated 11 years ago
- Logging plugin to bro to send logs to a Kafka broker☆20Nov 29, 2017Updated 8 years ago
- This is a simple Python script that connects to a MISP instance and retrieves attributes of specific types (such as IP addresses, URLs, a…☆16Feb 6, 2023Updated 3 years ago
- ☆13Oct 7, 2019Updated 6 years ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆12Jun 20, 2020Updated 5 years ago
- Detect Phishing with Bro IDS☆18Feb 1, 2017Updated 9 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Various DFIR Tools☆27Jul 23, 2018Updated 7 years ago
- ☆29Aug 9, 2016Updated 9 years ago
- Steve McCanne's Sharkfest '21 Talk☆16Oct 12, 2021Updated 4 years ago
- This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.☆22Jan 30, 2018Updated 8 years ago
- Setup script for Red Teams☆14Apr 7, 2025Updated last year
- Bro PCAP Processing and Tagging API☆28Nov 9, 2017Updated 8 years ago
- Modified edition of cuckoo☆18Feb 14, 2018Updated 8 years ago
- VirusTotal SIEM Integration and Automation☆18Jan 16, 2017Updated 9 years ago
- Configurations to implement Wazuh☆13Nov 28, 2022Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Expandable Defensive Cyber Operations Platform☆44Sep 28, 2022Updated 3 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Feb 27, 2019Updated 7 years ago
- A website and framework for testing NIDS detection☆57Aug 29, 2021Updated 4 years ago
- Time limited, auto-expiring group memberships for users on Google Cloud☆14Mar 29, 2022Updated 4 years ago
- uses keywords from alert logs to send SMS☆24Nov 20, 2015Updated 10 years ago
- Django middleware and signals for handling security events☆14Apr 14, 2021Updated 5 years ago
- Dockerfiles for NSM tools☆84Apr 14, 2017Updated 9 years ago
- Carve NTFS USN records from binary data☆27May 21, 2017Updated 9 years ago
- ☆26Oct 14, 2017Updated 8 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Mirror network traffic from one interface to another on Windows☆25Feb 26, 2020Updated 6 years ago
- Bro scripts written by CrowdStrike Services☆150May 3, 2021Updated 5 years ago
- Log newly created WMI consumers and processes to the Windows Application event log☆124Feb 28, 2018Updated 8 years ago
- Personal scripts☆15Sep 11, 2024Updated last year
- Script for generating Bro intel files from pdf or html reports☆76Dec 7, 2015Updated 10 years ago
- Lists of sources and utilities utilized to hunt, detect and prevent evildoers.☆170Dec 10, 2018Updated 7 years ago
- bro on debian with elasticsearch support☆24Mar 27, 2017Updated 9 years ago