elastic / geneveLinks
☆15Updated this week
Alternatives and similar repositories for geneve
Users that are interested in geneve are comparing it to the libraries listed below
Sorting:
- ☆14Updated 3 months ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 months ago
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 3 years ago
- ☆38Updated last year
- Apps to be used for Shuffle automation. Most of Shuffle's apps (2500+) are generated from APIs, and available in the search engine below:☆120Updated 3 weeks ago
- A Python library to help with some common threat hunting data analysis operations☆143Updated 2 years ago
- 🌴 The STIX2 Pattern expression parser for humans☆26Updated 6 years ago
- OASIS TC Open Repository: TAXII 2 Client Library Written in Python☆119Updated last year
- ☆30Updated 4 years ago
- OASIS Cyber Threat Intelligence (CTI) TC Open Repository: Convert STIX 1.2 XML to STIX 2.x JSON☆52Updated last year
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆24Updated 11 months ago
- A Python implementation of the Community ID flow hashing standard☆24Updated 2 years ago
- \B\C\M\C\ Open Source Software☆20Updated 4 years ago
- OASIS TC Open Repository: Validator for STIX 2.0 JSON normative requirements and best practices☆59Updated 5 months ago
- A Python library for handling TAXII Messages invoking TAXII Services.☆73Updated 4 years ago
- Python samples and utilities for Chronicle APIs☆88Updated 2 months ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆84Updated 2 weeks ago
- Zeek support for Community ID flow hashing.☆37Updated 2 years ago
- TAXII client implementation from EclecticIQ☆104Updated 4 years ago
- Wireshark plugin to display Suricata analysis info☆95Updated 4 years ago
- Command line tool used for generating events corpus dynamically given a specific integration☆23Updated 11 months ago
- Converts Netwitness log parser configuration to Logstash configuration☆20Updated 5 years ago
- STIX2 graph visualisation library in JS☆94Updated last month
- Swagger/ OpenAPI specifications for security products and services☆77Updated 3 weeks ago
- A tool to extract structured cyber information from incident reports.☆82Updated 7 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- Create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert☆36Updated 3 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆28Updated 5 years ago
- Structured Threat Intelligence Graph☆98Updated last week