jctello / JCT-Wazuh
Tools for Wazuh by Juan C. Tello
☆14Updated 3 years ago
Alternatives and similar repositories for JCT-Wazuh:
Users that are interested in JCT-Wazuh are comparing it to the libraries listed below
- Personal scripts☆12Updated 6 months ago
- ☆18Updated 3 years ago
- ☆17Updated 3 years ago
- ☆15Updated 2 years ago
- ☆16Updated 3 years ago
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 3 years ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- Wazuh integration TheHive☆34Updated 2 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆33Updated 4 years ago
- Convert Sigma rules to Wazuh rules☆63Updated 10 months ago
- Osquery Packs we use for customer security hardening☆12Updated 5 months ago
- Useful scripts for those administering Wazuh☆80Updated last month
- Workflows for Shuffle☆21Updated 2 years ago
- ☆33Updated last year
- Our collection of Wazuh detection rules for our Offense Lab☆13Updated 3 years ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆64Updated 3 years ago
- Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.☆51Updated 2 months ago
- Notes for High Availability MISP in AWS☆19Updated 5 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆39Updated 10 months ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆91Updated 2 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆23Updated this week
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆40Updated 2 years ago
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆34Updated 3 years ago
- A tool to modify timestamps in a packet capture to a user selected date☆31Updated 3 years ago
- Wazuh - Splunk App☆52Updated 5 months ago
- A collection of tips for using MISP.☆74Updated 3 months ago
- Lua plugin to extract data from Wireshark and convert it into MISP format☆47Updated last year
- Some resources to facilitate my blog on auditd for security monitoring☆12Updated last year