defenxor / dsiemLinks
Security event correlation engine for ELK stack
☆447Updated last year
Alternatives and similar repositories for dsiem
Users that are interested in dsiem are comparing it to the libraries listed below
Sorting:
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆248Updated this week
- DFIRTrack - The Incident Response Tracking Application☆529Updated last year
- Mapping the MITRE ATT&CK Matrix with Osquery☆803Updated 2 years ago
- PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform☆639Updated this week
- MISP Docker (XME edition)☆283Updated last year
- Create actionable data from your Vulnerability Scans☆1,396Updated 2 years ago
- Documentation of TheHive☆401Updated 2 years ago
- Documentation of Cortex☆175Updated 2 years ago
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆149Updated 3 years ago
- Open Source SIEM (Security Information and Event Management system).☆221Updated 2 years ago
- Cortex Analyzers Repository☆470Updated 3 weeks ago
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆473Updated this week
- Suricata, Snort and Zeek IDS rule and pcap testing system☆505Updated 2 months ago
- Python Script to access ATT&CK content available in STIX via a public TAXII server☆570Updated 11 months ago
- Wazuh - Ruleset☆492Updated last year
- Python API Client for TheHive☆235Updated last week
- DejaVU - Open Source Deception Framework☆422Updated 4 months ago
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆189Updated 4 years ago
- Actionable analytics designed to combat threats☆1,005Updated 3 years ago
- A set of Zeek scripts to detect ATT&CK techniques.☆617Updated last year
- A (nearly) production ready Dockered MISP☆231Updated last year
- Zeek-Formatted Threat Intelligence Feeds☆381Updated this week
- Elemental - An ATT&CK Threat Library☆320Updated 2 years ago
- Extract and aggregate threat intelligence.☆885Updated last year
- Real-time, container-based file scanning at enterprise scale☆961Updated last month
- Phantom Community Playbooks☆520Updated 3 weeks ago
- Praetorian's public release of our Metasploit automation of MITRE ATT&CK™ TTPs☆725Updated 5 years ago
- Suricata IDS/IPS log analytics using the Elastic Stack.☆240Updated 4 years ago
- Scirius is a web application for Suricata ruleset management and threat hunting.☆668Updated 2 months ago
- A Splunk app mapped to MITRE ATT&CK to guide your threat hunts☆1,171Updated 2 years ago