lmakonem / ELK-SIEM-Ansible-PlaybookLinks
Ansible Playbook to install the ELK Stack
☆44Updated 5 years ago
Alternatives and similar repositories for ELK-SIEM-Ansible-Playbook
Users that are interested in ELK-SIEM-Ansible-Playbook are comparing it to the libraries listed below
Sorting:
- Wazuh - Splunk App☆56Updated last year
- Run Velociraptor on Security Onion☆40Updated 3 years ago
- Installation script for ELK stack to make life easy.☆69Updated 5 years ago
- ☆19Updated 2 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆70Updated 4 years ago
- ☆92Updated last week
- ☆52Updated last week
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆54Updated this week
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆80Updated last month
- ☆39Updated 2 years ago
- Docker configurations for TheHive, Cortex and 3rd party tools☆128Updated 2 years ago
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆65Updated 8 years ago
- ☆34Updated 4 years ago
- All-in-one bundle of MISP, TheHive and Cortex☆169Updated 3 years ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆112Updated 3 years ago
- Repo Filled With Follow Along Guides☆80Updated 3 years ago
- Convert Sigma rules to Wazuh rules☆73Updated 2 months ago
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆93Updated 3 years ago
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 5 years ago
- Kibana 6 Templates for Suricata IDPS Threat Hunting☆24Updated 6 years ago
- Wazuh integration TheHive☆40Updated 2 years ago
- Collection of walkthroughs on various threat hunting techniques☆75Updated 5 years ago
- ☆60Updated last week
- ☆55Updated 4 years ago
- Collection of Dashboards for Threat Hunting and more!☆70Updated 5 years ago
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 5 years ago
- Official Palo Alto Networks MineMeld docker☆17Updated 5 years ago
- Run zeek with zeekctl in docker☆56Updated last year
- A Zeek Network Security Monitor tutorial that will cover the basics of creating a Zeek instance on your network in addition to all of the…☆63Updated 3 years ago
- Lokix Platform is a free open-source solution to help blue teams and threat hunters use Loki Scanner to sweep enterprise networks☆25Updated 5 years ago