misje / opencti-wazuh-connector
OpenCTI–Wazuh connector looking for indicators in Wazuh and creating sightings
☆16Updated 6 months ago
Alternatives and similar repositories for opencti-wazuh-connector:
Users that are interested in opencti-wazuh-connector are comparing it to the libraries listed below
- ☆33Updated last year
- Wazuh extension looking up alert data against indicators in OpenCTI threat intel☆17Updated last year
- ☆15Updated 2 years ago
- Useful scripts for those administering Wazuh☆80Updated last month
- Docker image for MISP☆122Updated 3 weeks ago
- Personal scripts☆12Updated 5 months ago
- (Unofficial) Wazuh integration to send alerts to IRIS.☆17Updated last month
- ☆18Updated 3 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆64Updated 3 years ago
- Tools for Wazuh by Juan C. Tello☆14Updated 3 years ago
- Convert Sigma rules to Wazuh rules☆63Updated 10 months ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆139Updated 2 weeks ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆87Updated 2 years ago
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆121Updated 6 months ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆42Updated 3 months ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆50Updated 2 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆33Updated 4 years ago
- A collection of tips for using MISP.☆74Updated 2 months ago
- Apps to be used for Shuffle automation. Most of Shuffle's apps (2500+) are generated from APIs, and available in the search engine below:☆104Updated this week
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆146Updated last year
- ☆68Updated 6 months ago
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆131Updated 11 months ago
- SOARCA - The Open Source CACAO-based Security Orchestrator!☆65Updated this week
- Wazuh integration TheHive☆34Updated last year
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆85Updated 2 months ago
- ☆18Updated 2 years ago
- A curated repository of incident response playbooks☆72Updated last year
- Docker configurations for TheHive, Cortex and 3rd party tools☆117Updated 2 years ago
- The Project can be used to integrate QRadar with MISP Threat Sharing Platform☆38Updated 2 years ago