josh-thurston / easyBEATS
Beats for Raspberry Pi / ARM
☆83Updated 3 years ago
Alternatives and similar repositories for easyBEATS:
Users that are interested in easyBEATS are comparing it to the libraries listed below
- Installation script for ELK stack to make life easy.☆69Updated 4 years ago
- elasticsearch, logstash and kibana configuration for pi-hole visualiziation☆205Updated 2 years ago
- Contains Logstash related content including tons of Logstash configurations☆253Updated 3 years ago
- Cisco eStreamer client☆24Updated 2 years ago
- Elasticsearch / Kibana for Unifi USG and CloudKey (gen2)☆19Updated 4 years ago
- Data validator agains Splunk Common Information Model (CIM)☆75Updated 11 months ago
- Parse wazuh[HIDS] alerts into ECS mapping using Filebeat☆27Updated 4 years ago
- Run zeek with zeekctl in docker☆51Updated 6 months ago
- ☆58Updated last year
- SIEM Logstash parsing for more than hundred technologies☆183Updated this week
- Allows for MAC address to vendor mapping in Splunk☆16Updated last year
- Dashboards and loader for ROCK NSM dashboards☆48Updated 2 years ago
- Docker files for building Zeek.☆86Updated last year
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆125Updated 2 years ago
- ☆39Updated 3 weeks ago
- ☆213Updated last year
- Risk Based Alerting Supporting Add-On (SA) for Splunk☆45Updated 3 years ago
- Elastic Beat for fetching and shipping Office 365 audit events☆66Updated 4 years ago
- ☆34Updated 3 years ago
- Integrate Zeek with Alienvault OTX☆25Updated 4 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆109Updated 4 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- Logstash configuration for pfSense syslog events.☆94Updated last year
- ☆37Updated 5 years ago
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Updated 5 years ago
- A website and framework for testing NIDS detection☆57Updated 3 years ago
- Splunk Alert Manager with advanced reporting on alerts, workflows (modify assignee, status, severity) and auto-resolve features☆81Updated 2 years ago
- ☆29Updated 4 years ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year
- A collection of notebooks built for defensive and offensive operations.☆77Updated 4 years ago