sttor / osquery-wazuh-response
Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug
☆9Updated 4 years ago
Alternatives and similar repositories for osquery-wazuh-response:
Users that are interested in osquery-wazuh-response are comparing it to the libraries listed below
- defendA Data Lake. A firehose pipeline to athena providing enrichment and normalization for security events☆16Updated 2 years ago
- Osquery Packs we use for customer security hardening☆12Updated 7 months ago
- Documentation used for Shuffle☆19Updated this week
- Sharing Threat Hunting runbooks☆25Updated 5 years ago
- Workflows for Shuffle☆21Updated 2 years ago
- An ongoing collection of of AWS tools, frameworks, libraries, learning tutorials for InfoSec and security professionals☆23Updated 3 years ago
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 5 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆51Updated 2 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated 6 months ago
- Legal, procedural and policies document templates for operating MISP and information sharing communities☆38Updated 2 years ago
- A catalog designed for environments with multiple or diffuse Information Security vulnerability-related information sources.☆12Updated last year
- Build Automated Machine Images for MISP☆28Updated last year
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated 11 months ago
- ☆11Updated 8 years ago
- ☆10Updated 2 years ago
- OSSEM Common Data Model☆55Updated 2 years ago
- A set of tools and procedures for automating NSM and NIDS deployments in AWS☆16Updated 4 years ago
- Best practices in threat intelligence☆46Updated 2 years ago
- Incident Response Plan for all major incidents including cheatsheets for both linux and windows☆14Updated 4 years ago
- Threat Intelligence with Elastic - Minemeld integration with Elasticsearch☆19Updated 3 years ago
- Firepit - STIX Columnar Storage☆16Updated 11 months ago
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 6 years ago
- Use SQL to instantly query file, domain, URL and IP scanning results from VirusTotal.☆22Updated 2 weeks ago
- osquery query packs☆14Updated 6 years ago
- ☆18Updated 3 years ago
- Elastic TIP is a python tool which automates the process of aggregating Threat Intelligence and ingesting the intelligence into a common …☆27Updated 9 months ago
- Incident Response Report Using GitHub-Sphinx☆20Updated 5 years ago
- Falcon Integration Gateway (FIG)☆18Updated last week
- ☆19Updated 3 years ago
- Osquery Resources☆60Updated 5 years ago