sttor / osquery-wazuh-response
Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug
☆9Updated 4 years ago
Alternatives and similar repositories for osquery-wazuh-response:
Users that are interested in osquery-wazuh-response are comparing it to the libraries listed below
- defendA Data Lake. A firehose pipeline to athena providing enrichment and normalization for security events☆16Updated last year
- Osquery Packs we use for customer security hardening☆12Updated 6 months ago
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 5 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆51Updated 2 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated 5 months ago
- ☆19Updated 3 years ago
- Documentation used for Shuffle☆19Updated 2 weeks ago
- Legal, procedural and policies document templates for operating MISP and information sharing communities☆38Updated 2 years ago
- A catalog designed for environments with multiple or diffuse Information Security vulnerability-related information sources.☆12Updated last year
- Build Automated Machine Images for MISP☆28Updated last year
- Osquery Resources☆60Updated 5 years ago
- A Lambda-powered Security Orchestration framework for AWS GuardDuty☆52Updated 5 years ago
- Fun tools around the EBS Direct API☆18Updated 4 years ago
- A Java library for programmatically calculating OWASP Risk Rating scores☆18Updated 2 years ago
- Best practices in threat intelligence☆46Updated 2 years ago
- 🐻❄️ 🏹 Threat hunting with Polars and flaws.cloud AWS CloudTrail datasets.☆10Updated 10 months ago
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated 10 months ago
- ☆10Updated 2 years ago
- Various blog post projects.☆10Updated 9 months ago
- ☆17Updated 3 years ago
- OSSEM Common Data Model☆55Updated 2 years ago
- Tools for Wazuh by Juan C. Tello☆14Updated 3 years ago
- ☆11Updated 3 years ago
- Wazuh - Chef cookbooks☆22Updated last year
- Example Suricata rules implementing some of my detection tactics☆20Updated 2 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated 3 weeks ago
- Tool to check compliance with CIS Linux Benchmarks, specifically Distribution Independent, Debian 9 and Ubuntu 18.04 LTS, and generate sp…☆24Updated 4 years ago
- Collection of Dashboards for Threat Hunting and more!☆67Updated 4 years ago
- Sharing Threat Hunting runbooks☆25Updated 5 years ago
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 6 years ago