misje / wazuh-opencti
Wazuh extension looking up alert data against indicators in OpenCTI threat intel
☆17Updated last year
Alternatives and similar repositories for wazuh-opencti:
Users that are interested in wazuh-opencti are comparing it to the libraries listed below
- ☆33Updated last year
- A production ready Dockered MISP☆204Updated this week
- Docker image for MISP☆122Updated last month
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆28Updated 4 months ago
- Personal scripts☆12Updated 5 months ago
- OpenCTI–Wazuh connector looking for indicators in Wazuh and creating sightings☆16Updated 6 months ago
- (Unofficial) Wazuh integration to send alerts to IRIS.☆17Updated last month
- SOCFortress CoPilot☆250Updated this week
- Useful scripts for those administering Wazuh☆80Updated last month
- Convert Sigma rules to Wazuh rules☆63Updated 10 months ago
- ☆15Updated 2 years ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆223Updated last year
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆64Updated 3 years ago
- Docker image for Velocidex Velociraptor☆118Updated 7 months ago
- ☆13Updated last year
- ☆18Updated 3 years ago
- MISP to Sentinel integration☆62Updated 2 months ago
- These are open source rules that can be utilized with QRadar to detect various types of threats in the environment.☆52Updated 5 years ago
- ☆31Updated 3 years ago
- Practical Threat Detection Engineering, Published by Packt☆65Updated last year
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆88Updated 2 years ago
- ☆100Updated last month
- Tools for simulating threats☆181Updated last year
- Dettectinator - The Python library to your DeTT&CT YAML files.☆108Updated last month
- Resources To Learn And Understand SIGMA Rules☆174Updated 2 years ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆107Updated 2 years ago
- MISP Playbooks☆184Updated last week
- Advanced Wazuh Rules for more accurate threat detection. Feel free to implement within your own Wazuh environment, contribute, or fork!☆671Updated this week
- A list of Splunk queries that I've collected and used over time.☆74Updated 4 years ago
- Repository of SentinelOne Deep Visibility queries.☆122Updated 3 years ago