kotlaluk / spl-parser
Parser for Splunk's Search Processing Language (SPL) syntax highlighting
☆17Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for spl-parser
- Threat Detection Rules (Snort/Sigma/Yara)☆13Updated 10 months ago
- A Zeek package that detects Zoom logins and meeting joins☆11Updated 4 years ago
- Strelka Web UI for File Submission and Analysis☆57Updated 3 months ago
- Hosted analyzers built for Grapl☆13Updated last year
- Firepit - STIX Columnar Storage☆15Updated 5 months ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 weeks ago
- Zeek support for Community ID flow hashing.☆34Updated last year
- Simple parser for Splunk Processing Language (SPL) written in Python.☆35Updated 6 years ago
- Contains research.splunk.com site code☆10Updated 7 months ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 2 months ago
- pySigma Cookiecutter backend template☆21Updated last week
- Custom Splunk search command to reconstruct a pstree from Sysmon process creation events (EventCode 1)☆23Updated last year
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 4 years ago
- Kestrel Jupyter Notebook Kernel☆9Updated last year
- OSSEM Common Data Model☆54Updated 2 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆50Updated 2 years ago
- Automatic detection engineering technical state compliance☆51Updated 4 months ago
- ☆29Updated this week
- Cisco Orbital - Osquery queries by Talos☆123Updated 2 months ago
- ☆33Updated 3 years ago
- The official Prelude-Correlator GitHub mirror of https://www.prelude-siem.org/projects/prelude-correlator/repository☆10Updated 3 years ago
- This project is no longer maintained. There's a successor at https://github.com/zeek-packages/zeek-agent-v2☆14Updated 4 years ago
- An elevated STIX representation of the MITRE ATT&CK Groups knowledge base☆23Updated 2 years ago
- Graph Representation of MITRE ATT&CK's CTI data☆48Updated 5 years ago
- Web app that provides basic navigation and annotation of ATT&CK matrices☆16Updated 4 years ago
- Bluehat 2018 Graphs for Security Workshop☆42Updated 6 years ago
- This repository includes a mapping table and a reference process that allows converting between STIX 2.1 Course of Action objects that ma…☆15Updated 2 years ago
- Python samples and utilities for Chronicle APIs☆77Updated this week
- Pure python parser for Snort/Suricata rules.☆27Updated 8 months ago
- ☆27Updated 3 years ago