dogoncouch / LogESP
Open Source SIEM (Security Information and Event Management system).
☆197Updated last year
Related projects ⓘ
Alternatives and complementary repositories for LogESP
- DFIRTrack - The Incident Response Tracking Application☆482Updated 2 months ago
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆244Updated 2 weeks ago
- Security event correlation engine for ELK stack☆434Updated 4 months ago
- Documentation of Cortex☆170Updated last year
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆147Updated 2 years ago
- SIEM Tactics, Techiques, and Procedures☆587Updated last month
- MISP trainings, threat intel and information sharing training materials with source code☆390Updated this week
- MISP Docker (XME edition)☆283Updated 11 months ago
- This content is analysis and research of the data sources currently listed in ATT&CK.☆407Updated last year
- Actionable analytics designed to combat threats☆972Updated 2 years ago
- Documentation of TheHive☆393Updated last year
- A set of Zeek scripts to detect ATT&CK techniques.☆565Updated 4 months ago
- CASCADE Server☆264Updated last year
- A curated list of awesome things related to TheHive & Cortex☆173Updated 3 years ago
- Python API Client for TheHive☆218Updated last week
- Threat Report ATT&CK™ Mapping (TRAM) is a tool to aid analyst in mapping finished reports to ATT&CK.☆346Updated 3 years ago
- Automated Use Case Testing☆165Updated 6 years ago
- A collection of resources for Threat Hunters☆856Updated last month
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆184Updated 3 years ago
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆258Updated last year
- Mapping the MITRE ATT&CK Matrix with Osquery☆776Updated last year
- Python Script to access ATT&CK content available in STIX via a public TAXII server☆557Updated 5 months ago
- Collaborative Open Playbook Standard☆150Updated last year
- Extract and aggregate threat intelligence.☆832Updated 9 months ago
- A live dashboard for a real-time overview of threat intelligence from MISP instances☆194Updated last year
- DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.☆539Updated 2 years ago
- Cortex Analyzers Repository☆435Updated 2 weeks ago
- 🚨ATTENTION🚨 The CVE mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as…☆232Updated 7 months ago
- TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE AT…☆453Updated last week
- Collecting & Hunting for IOCs with gusto and style☆236Updated 3 years ago