elastic / geneve
☆13Updated this week
Alternatives and similar repositories for geneve:
Users that are interested in geneve are comparing it to the libraries listed below
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated last month
- Converts Netwitness log parser configuration to Logstash configuration☆20Updated 4 years ago
- server for indexing and querying passive DNS observations☆45Updated last week
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Specifications used in the MISP project including MISP core format☆51Updated 2 months ago
- A curses-style interface for automatic takedown notification based on MISP events.☆20Updated 4 years ago
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆11Updated 9 months ago
- A few quick recipes for those that do not have much time during the day☆22Updated 5 months ago
- Zeek support for Community ID flow hashing.☆35Updated last year
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆32Updated last month
- Pre-configured environment that supports the development and running of OpenDXL solutions☆13Updated 4 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 3 years ago
- List of Awesome Vertex Synapse Resources☆27Updated 7 months ago
- ☆18Updated 3 years ago
- A Python implementation of the Community ID flow hashing standard☆23Updated last year
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 4 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Updated 5 years ago
- A Splunk technology add-on for osquery☆14Updated 3 years ago
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆22Updated 5 years ago
- My logstash plugins. Filter: sig (for security detect -> IOC, sig, New value, Reference, link, frequence, ...). Output: alert created by …☆11Updated 5 years ago
- WebUI of MineMeld☆43Updated 2 years ago
- Adversary Emulation Planner☆38Updated 9 months ago
- Best practices in threat intelligence☆46Updated 2 years ago
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆49Updated 8 months ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated last week
- Bro script package to create JSON formatted logs to stream into data analysis systems.☆28Updated last year
- A website and framework for testing NIDS detection☆57Updated 3 years ago
- ☆23Updated 5 years ago