elastic / security-docs
Elastic Security Documentation
☆69Updated this week
Related projects ⓘ
Alternatives and complementary repositories for security-docs
- Elastic Integrations☆30Updated this week
- Elastic Agent - single, unified way to add monitoring for logs, metrics, and other types of data to a host.☆21Updated this week
- Wazuh - Splunk App☆50Updated 2 months ago
- Repo for developing the endpoint package☆2Updated this week
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 2 years ago
- elastic-package - Command line tool for developing Elastic Integrations☆49Updated this week
- Security Analytics enables users for detecting security threats on their security event log data. It will also allow them to modify/tailo…☆72Updated this week
- Cisco Orbital - Osquery queries by Talos☆123Updated 3 months ago
- SIEM Logstash parsing for more than hundred technologies☆181Updated this week
- Phantom Apps Repo☆82Updated 3 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆141Updated last year
- Sigma rule specification☆111Updated 2 weeks ago
- Demisto SDK - Create Demisto Content with ease and efficiency☆72Updated this week
- ☆30Updated 7 months ago
- The Sigma command line interface based on pySigma☆136Updated 3 months ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 weeks ago
- OSSEM Common Data Model☆54Updated 2 years ago
- Wazuh - RESTful API☆69Updated 2 months ago
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆184Updated 3 years ago
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆22Updated 2 years ago
- OCA-wide documentation shared by all sub-projects and repositories☆33Updated 3 weeks ago
- ☆16Updated last month
- ☆125Updated last year
- Sigma rules from Joe Security☆203Updated 2 weeks ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- Firepit - STIX Columnar Storage☆15Updated 5 months ago
- Apps to be used for Shuffle automation. Most of Shuffle's apps (2500+) are generated from APIs, and available in the search engine below:☆101Updated this week
- ☆48Updated this week
- Elastic Observability Documentation☆36Updated this week
- OpenCTI Docker deployment helpers☆159Updated this week