socfortress / OSSIEMLinks
Open Source SIEM Stack
☆115Updated last month
Alternatives and similar repositories for OSSIEM
Users that are interested in OSSIEM are comparing it to the libraries listed below
Sorting:
- SOCFortress CoPilot☆354Updated this week
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆29Updated 11 months ago
- 2025 OpenVAS appliance install & upgrade scripts, includes https front end (self signed), authenticated SMB scanning & email reports☆78Updated 6 months ago
- Open Source SIEM Stack☆26Updated 11 months ago
- ☆30Updated 2 years ago
- ☆38Updated 2 years ago
- MCP Server for Wazuh SIEM☆116Updated 2 months ago
- Useful scripts for those administering Wazuh☆86Updated last week
- A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.☆366Updated last week
- A production ready Dockered MISP☆279Updated last week
- T-Guard Repository☆17Updated last year
- ☆217Updated last year
- Advanced Wazuh Rules for more accurate threat detection. Feel free to implement within your own Wazuh environment, contribute, or fork!☆1,070Updated last month
- A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.☆454Updated last week
- Bitor Scanning Software☆407Updated last month
- Repo to hold wazuh manager mcp server☆56Updated last month
- Enterprise-ready SIEM, SOAR and Compliance powered by real-time correlation and threat intelligence.☆325Updated last week
- A website and framework for testing NIDS detection☆285Updated 2 months ago
- A simple vulnerability scanning application built with FastAPI. vulnerability-scanner open-source-security nmap-cve SIEM☆29Updated this week
- Docker image for Velocidex Velociraptor☆134Updated 6 months ago
- ☆70Updated 4 months ago
- ☆19Updated 2 years ago
- A powerful and user-friendly browser extension that streamlines investigations for security professionals.☆403Updated 4 months ago
- DECeption with Evaluative Integrated Validation Engine (DECEIVE): Let an LLM do all the hard honeypot work!☆260Updated 3 months ago
- OpenAEV Docker deployment helpers☆23Updated this week
- Fully automated host & network intrusion detection platform. Detects malware from behavioural patterns rather than signatures and enables…☆138Updated last year
- OpenCTI Docker deployment helpers☆203Updated this week
- A list of Splunk queries that I've collected and used over time.☆86Updated 4 years ago
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆387Updated 3 weeks ago
- ☆21Updated last week