elastic / integrations
☆270Updated this week
Alternatives and similar repositories for integrations:
Users that are interested in integrations are comparing it to the libraries listed below
- elastic-package - Command line tool for developing Elastic Integrations☆56Updated this week
- Elastic Security Documentation☆86Updated this week
- Elastic Agent - single, unified way to add monitoring for logs, metrics, and other types of data to a host.☆163Updated this week
- The Fleet server allows managing a fleet of Elastic Agents.☆92Updated this week
- SIEM Logstash parsing for more than hundred technologies☆183Updated this week
- Elastic Observability Documentation☆37Updated this week
- Security Analytics enables users for detecting security threats on their security event log data. It will also allow them to modify/tailo…☆79Updated last week
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)☆436Updated this week
- Splunk Connect for Syslog☆161Updated last week
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆22Updated last month
- Plugins for Wazuh Dashboard☆450Updated this week
- The Sigma command line interface based on pySigma☆147Updated last month
- Helm charts for running open source digital forensic tools in Kubernetes☆88Updated last week
- Splunk Content Control Tool☆108Updated this week
- OpenCTI Docker deployment helpers☆178Updated last week
- EPR package specifications☆19Updated this week
- Built-in Panther detection rules and policies☆369Updated this week
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 3 years ago
- OpenCTI Connectors☆423Updated this week
- OpenSearch Data Prepper is a component of the OpenSearch project that accepts, filters, transforms, enriches, and routes data at scale.☆282Updated this week
- Elastic Common Schema☆1,048Updated this week
- Elastic Package Registry (EPR)☆45Updated this week
- Wazuh - Tools for packages creation☆107Updated 4 months ago
- The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).☆366Updated this week
- The CrowdStrike Falcon SDK for Python☆395Updated 2 weeks ago
- Production-ready detection & response queries for osquery☆557Updated last week
- 📟 Get notified when your data meets certain conditions by setting up monitors, alerts, and notifications☆66Updated this week
- ⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident…☆386Updated last week
- SIEGMA - Transform Sigma rules into SIEM consumables☆149Updated 2 weeks ago
- Sublime rules for email attack detection, prevention, and threat hunting.☆282Updated last week