grafana / pySigma-backend-lokiLinks
pySigma backend for generating Grafana Loki/LogQL rules
☆45Updated last week
Alternatives and similar repositories for pySigma-backend-loki
Users that are interested in pySigma-backend-loki are comparing it to the libraries listed below
Sorting:
- Falco rule repository☆127Updated 3 weeks ago
- A standard for reducing log volume without sacrificing analytical capability☆206Updated 4 months ago
- Validate the isolation posture of your container environment.☆291Updated 2 weeks ago
- This is a collection of threat detection rules / rules engines that I have come across.☆290Updated last year
- 🧰 Multi Tool Kubernetes Pentest Image☆240Updated 3 months ago
- Production-ready detection & response queries for osquery☆579Updated 2 weeks ago
- ☆179Updated 2 months ago
- A curated list of resources about detecting threats and defending Kubernetes systems.☆385Updated last year
- Response Engine for managing threats in your Kubernetes☆165Updated last week
- kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and kn…☆54Updated last year
- Security Analytics enables users for detecting security threats on their security event log data. It will also allow them to modify/tailo…☆86Updated 2 weeks ago
- Threatest is a CLI and Go framework for end-to-end testing threat detection rules.☆330Updated 2 months ago
- ☆262Updated 7 months ago
- ⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident…☆408Updated 2 weeks ago
- Deep Linux runtime visibility meets Wireshark☆292Updated 3 weeks ago
- Generate datasets of cloud audit logs for common attacks☆216Updated 11 months ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆31Updated 8 months ago
- Transform Linux Audit logs for SIEM usage☆774Updated 2 weeks ago
- Add a layer of active defense to your cloud applications.☆93Updated last week
- VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities☆102Updated 9 months ago
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆99Updated last year
- The Sigma command line interface based on pySigma☆157Updated 3 months ago
- Curating Falco rules with MITRE ATT&CK Matrix☆82Updated last year
- The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).☆386Updated last week
- ☆73Updated 3 months ago
- Repo to hold wazuh manager mcp server☆24Updated this week
- A tool for preventing the installation of malicious npm and PyPI packages☆150Updated last week
- Substation is a toolkit for routing, normalizing, and enriching security event and audit logs.☆373Updated 2 weeks ago
- Save toil in security operations with: Detection & Intelligence Analysis for New Alerts (D.I.A.N.A. )☆186Updated 10 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆105Updated 6 months ago