elastic / security-docs
Elastic Security Documentation
☆86Updated this week
Alternatives and similar repositories for security-docs:
Users that are interested in security-docs are comparing it to the libraries listed below
- elastic-package - Command line tool for developing Elastic Integrations☆56Updated this week
- Repo for developing the endpoint package☆22Updated 2 weeks ago
- ☆270Updated this week
- Translate an ECS mapping CSV to starter pipelines for Beats, Elasticsearch or Logstash☆54Updated 2 years ago
- ☆33Updated 2 weeks ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 weeks ago
- Elastic Observability Documentation☆37Updated this week
- SIEGMA - Transform Sigma rules into SIEM consumables☆146Updated last year
- SIEM Logstash parsing for more than hundred technologies☆183Updated this week
- The Sigma command line interface based on pySigma☆144Updated last month
- Splunk Content Control Tool☆98Updated this week
- EPR package specifications☆19Updated last week
- Phantom Apps Repo☆82Updated 3 years ago
- A CALDERA plugin☆74Updated 3 months ago
- OSSEM Common Data Model☆55Updated 2 years ago
- Sigma rule specification☆125Updated last month
- Elastic Agent - single, unified way to add monitoring for logs, metrics, and other types of data to a host.☆161Updated this week
- Zeek package for tracking long connections to report them before they have completed.☆29Updated 3 weeks ago
- OSSEM Data Dictionaries☆59Updated 3 weeks ago
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆44Updated this week
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆22Updated 2 weeks ago
- Command line tool used for generating events corpus dynamically given a specific integration☆23Updated 2 weeks ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆43Updated 4 months ago
- OASIS TC Open Repository: TAXII 2 Client Library Written in Python☆113Updated 10 months ago
- Elastic Package Registry (EPR)☆45Updated this week
- Splunk code (SPL) for serious threat hunters and detection engineers.☆271Updated last year
- Sigma rules from Joe Security☆206Updated 3 months ago
- Wazuh - Splunk App☆52Updated 5 months ago
- Splunk Connect for Syslog☆160Updated this week
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆185Updated 3 years ago