swiftbird07 / elastic-agent-androidLinks
๐ Enterprise-grade Android Monitoring with Elastic: Streamline Fleet Management and Security Insights. ๐
โ10Updated 3 months ago
Alternatives and similar repositories for elastic-agent-android
Users that are interested in elastic-agent-android are comparing it to the libraries listed below
Sorting:
- Transform Linux Audit logs for SIEM usageโ774Updated 2 weeks ago
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)โ471Updated 2 weeks ago
- OpenCTI Connectorsโ450Updated last week
- Splunk Add-on for Microsoft Azureโ11Updated 6 months ago
- Scripts that cover the basics of interacting with the AMP for Endpoints APIโ17Updated 6 years ago
- SIEM Logstash parsing for more than hundred technologiesโ185Updated last week
- A repository of curated datasets from various attacksโ662Updated last week
- Configuration files for the SOF-ELK VMโ1,605Updated 2 weeks ago
- Splunk Content Control Toolโ114Updated this week
- A production ready Dockered MISPโ255Updated last week
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Respondersโ924Updated last year
- Collaborative Incident Response platformโ1,214Updated this week
- A website and framework for testing NIDS detectionโ269Updated this week
- This repository contains Community and Field contributed content for LogScaleโ249Updated last week
- Zeek-Formatted Threat Intelligence Feedsโ374Updated this week
- This repository contains a few examples of actions that can be added to rules within Elastic Security.โ22Updated 5 months ago
- Advanced Wazuh Rules for more accurate threat detection. Feel free to implement within your own Wazuh environment, contribute, or fork!โ802Updated last week
- RBA is Splunk's method to aggregate low-fidelity security events as interesting observations tagged with security metadata to create highโฆโ56Updated last week
- TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE ATโฆโ506Updated 2 months ago
- Splunk spec files version historyโ35Updated 3 weeks ago
- GHOSTS is a realistic user simulation framework for cyber experimentation, simulation, training, and exerciseโ584Updated last week
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniquesโ372Updated 6 months ago
- Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-tโฆโ1,064Updated last week
- Real-time, container-based file scanning at enterprise scaleโ932Updated last week
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs anโฆโ416Updated last week
- A knowledge base of actionable Incident Response techniquesโ643Updated 3 years ago
- SIEM Tactics, Techiques, and Proceduresโ645Updated this week
- Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by develโฆโ664Updated last week
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logsโ723Updated 3 months ago
- STIX data representing MITRE ATT&CKโ427Updated 2 months ago