swimlane / elk-tls-dockerLinks
This repository contains code to create a ELK stack with certificates & security enabled using docker-compose
☆192Updated last year
Alternatives and similar repositories for elk-tls-docker
Users that are interested in elk-tls-docker are comparing it to the libraries listed below
Sorting:
- A python package for use in generating fake data for SOC and security automation.☆174Updated 10 months ago
- Purple Teaming Attack & Hunt Lab - Terraform☆162Updated 4 years ago
- PowerShell - Endpoint Analysis Solution Your Windows Intranet Needs☆48Updated last year
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆94Updated 3 years ago
- Installation script for ELK stack to make life easy.☆69Updated 5 years ago
- Detection Ideas & Rules repository.☆178Updated 4 years ago
- Blueteam operational triage registry hunting/forensic tool.☆149Updated 4 months ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆145Updated 3 years ago
- Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228☆151Updated 4 years ago
- A collection of Powershell scripts that will help automate the build process for a Marvel domain.☆152Updated last year
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆112Updated 3 years ago
- Defence Against the Dark Arts☆34Updated 6 years ago
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆55Updated 3 years ago
- ☆69Updated 4 years ago
- OSSEM Data Dictionaries☆65Updated last year
- Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.☆45Updated 5 years ago
- Repository for SPEED SIEM Use Case Framework☆56Updated 5 years ago
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆158Updated 4 years ago
- All-in-one bundle of MISP, TheHive and Cortex☆169Updated 3 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆71Updated 4 years ago
- Sysmon EDR POC Build within Powershell to prove ability.☆226Updated 4 years ago
- ☆43Updated 2 years ago
- Powershell Event Tracing Toolbox☆77Updated 3 years ago
- Ansible Playbook to install the ELK Stack☆44Updated 5 years ago
- The PoLRBear Project☆35Updated 4 years ago
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆74Updated this week
- Find and notify users in your Active Directory with weak passwords☆103Updated 4 years ago
- A collection of useful PowerShell tools to collect, organize, and visualize Sysmon event data☆39Updated 5 years ago
- Pushes Sysmon Configs☆90Updated 4 years ago
- ☆34Updated 4 years ago