jopohl / sigma-rust
A Rust library for parsing and evaluating Sigma rules
☆11Updated this week
Alternatives and similar repositories for sigma-rust:
Users that are interested in sigma-rust are comparing it to the libraries listed below
- Framework definitions that allow to build a custom SIEM.☆26Updated 7 months ago
- A document tagging library☆30Updated last month
- Alternative YARA scanning engine☆70Updated 2 years ago
- Wrapper for TSK (Sleuth Kit) Bindings☆11Updated 2 years ago
- Windows file metadata / forensic tool.☆18Updated 7 months ago
- A web scraper to create MISP events and reports☆14Updated 3 weeks ago
- A Windows registry file parser written in Rust☆38Updated last year
- Sandbox samples and monitor them with kunai☆21Updated last week
- pocket guide for core threat hunting concepts☆23Updated 5 years ago
- ☆16Updated last month
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆77Updated last year
- ☆43Updated last month
- The core backend server handling API requests and task management☆39Updated 2 weeks ago
- Publicly shareable windows event log message data☆27Updated 5 years ago
- A cross platform forensic parser written in Rust!☆81Updated this week
- Lightweight Python-Based Malware Analysis Pipeline☆34Updated this week
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated last year
- Get started using Synapse Open-Source to start a Cortex and perform analysis within your area of expertise.☆42Updated 2 years ago
- JPCERT/CC public YARA rules repository☆106Updated 5 months ago
- PyVelociraptor contains the python bindings for the Velociraptor API.☆17Updated 2 weeks ago
- CAPE Auto-Hardened Installer☆23Updated 3 months ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆27Updated 2 weeks ago
- ☆34Updated 6 months ago
- Detection Engineering with YARA☆87Updated last year
- Convert Sigma Rules to different formats☆11Updated 9 months ago
- Sigma Engine implementation in TypeScript☆27Updated 2 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆51Updated 2 years ago
- Signature engine for all your logs☆168Updated last year
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆38Updated last month
- A cyber threat intelligence chatbot that ingested 2200+ reports from vx-underground.☆23Updated last year