swimlane / elk-tls-dockerLinks
This repository contains code to create a ELK stack with certificates & security enabled using docker-compose
☆192Updated last year
Alternatives and similar repositories for elk-tls-docker
Users that are interested in elk-tls-docker are comparing it to the libraries listed below
Sorting:
- A python package for use in generating fake data for SOC and security automation.☆172Updated 9 months ago
- OSSEM Data Dictionaries☆65Updated 10 months ago
- Purple Teaming Attack & Hunt Lab - Terraform☆161Updated 4 years ago
- All-in-one bundle of MISP, TheHive and Cortex☆169Updated 3 years ago
- Actionable data for Security Operations☆19Updated 4 years ago
- Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228☆151Updated 3 years ago
- Installation script for ELK stack to make life easy.☆69Updated 5 years ago
- PowerShell - Endpoint Analysis Solution Your Windows Intranet Needs☆48Updated last year
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆143Updated 3 years ago
- Detection Ideas & Rules repository.☆178Updated 4 years ago
- Repository for SPEED SIEM Use Case Framework☆56Updated 5 years ago
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆156Updated 4 years ago
- Defence Against the Dark Arts☆34Updated 6 years ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆112Updated 3 years ago
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆65Updated 8 years ago
- Convert Sigma rules to Wazuh rules☆73Updated 2 months ago
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆94Updated 3 years ago
- ☆34Updated 4 years ago
- Threat Hunting & Incident Investigation with Osquery☆216Updated 3 years ago
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆154Updated 3 years ago
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆189Updated 4 years ago
- A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.☆137Updated last year
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆94Updated 3 years ago
- Blueteam operational triage registry hunting/forensic tool.☆150Updated 3 months ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆70Updated 4 years ago
- Repo containing docker-compose files and setup scripts without having to clone the individual reternal components☆112Updated 4 years ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆171Updated last year
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆38Updated 2 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆157Updated 9 months ago
- Run Velociraptor on Security Onion☆40Updated 3 years ago