lmakonem / ELK-SIEM-Ansible-Playbook
Ansible Playbook to install the ELK Stack
☆42Updated 4 years ago
Alternatives and similar repositories for ELK-SIEM-Ansible-Playbook:
Users that are interested in ELK-SIEM-Ansible-Playbook are comparing it to the libraries listed below
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Run zeek with zeekctl in docker☆51Updated 5 months ago
- ☆15Updated 2 years ago
- ☆48Updated this week
- ☆31Updated 3 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆68Updated last year
- ☆33Updated last year
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆66Updated 7 years ago
- ☆87Updated this week
- Installation script for ELK stack to make life easy.☆69Updated 4 years ago
- Kibana 6 Templates for Suricata IDPS Threat Hunting☆24Updated 5 years ago
- Wazuh - Splunk App☆52Updated 5 months ago
- Elastic TIP is a python tool which automates the process of aggregating Threat Intelligence and ingesting the intelligence into a common …☆27Updated 6 months ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆64Updated 3 years ago
- Collection of walkthroughs on various threat hunting techniques☆75Updated 4 years ago
- Repository for SPEED SIEM Use Case Framework☆53Updated 4 years ago
- Kibana 7 Templates for Suricata IDPS Threat Hunting☆40Updated 2 years ago
- All-in-one bundle of MISP, TheHive and Cortex☆170Updated 2 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated 2 months ago
- Repo Filled With Follow Along Guides☆73Updated 2 years ago
- Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.☆44Updated 4 years ago
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆94Updated 2 years ago
- Extracts fields from zeek logs, compatible with zeek-cut☆20Updated 7 months ago
- ☆34Updated 3 years ago
- Wazuh integration TheHive☆34Updated last year
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆28Updated 4 months ago
- ☆54Updated 3 years ago
- SIEM-From-Scratch is a drop-in ELK based SIEM component for your Vagrant infosec lab☆36Updated 4 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆15Updated 3 years ago