slackhq / elastalert
Easy & Flexible Alerting With ElasticSearch
☆19Updated 9 years ago
Alternatives and similar repositories for elastalert:
Users that are interested in elastalert are comparing it to the libraries listed below
- Launchd daemon that reports major OSX modifications through growl☆16Updated 10 years ago
- IP geolocation for authentication events with MozDef☆10Updated 5 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 10 years ago
- A tiny command line utility to query elasticsearch. "☆23Updated 5 years ago
- Feed for verious malicious IPs such as malware and botnets☆12Updated 8 years ago
- ☆30Updated 6 years ago
- Minion Frontend☆30Updated 5 years ago
- ☆24Updated 5 years ago
- INACTIVE - http://mzl.la/ghe-archive - Minion Backend☆41Updated 5 years ago
- Using osquery for Mass Incident Detection & Response☆19Updated 8 years ago
- Things to know when DFIR occurs near a vault deployment.☆43Updated 6 years ago
- SPL to lucene translator☆15Updated 10 years ago
- Enrich a host with open source security information☆27Updated 9 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 8 years ago
- Push "BAD" IPs/Networks into QRadar's "Remote Networks", tag them properly, and use them!☆18Updated 11 years ago
- Yara Dockerfile☆50Updated 2 years ago
- A Docker container for Cowrie - SSH honeypot based on kippo☆10Updated 9 years ago
- Fun with Amazon AWS and Maltego☆29Updated 7 years ago
- Go bindings for yara: pattern matching swiss knife http://plusvic.github.io/yara/☆10Updated 9 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Scripts for making Hubot a CND Sidekick☆59Updated 8 years ago
- Logstash Input Plugin for Cloudflare logs☆14Updated 5 years ago
- A program to monitor network traffic and detect unauthorized sessions.☆41Updated 14 years ago
- A reconnaissance tool that can quickly discover hostnames from a list of IP addresses.☆38Updated 14 years ago
- Custom slash command to do ipinfo.io lookups from within Slack☆10Updated 8 years ago
- A package manager for Zeek☆44Updated 2 months ago
- Python based client for IBM XForce Exchange☆25Updated 8 years ago
- ☆22Updated 4 years ago
- A Python library for being a CND Batman....☆35Updated 9 years ago
- Service mapping API☆25Updated last year