theflakes / StoWLinks
Sigma to Wazuh rule converter
☆17Updated 4 months ago
Alternatives and similar repositories for StoW
Users that are interested in StoW are comparing it to the libraries listed below
Sorting:
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆32Updated last year
- 🛡️ VIPER: Stay ahead of threats with AI-driven vulnerability intelligence. Prioritize CVEs effectively using NVD, EPSS, CISA KEV, and Go…☆82Updated 5 months ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆113Updated 3 years ago
- Automation tool for Windows Deception Host Burn-In☆86Updated last year
- Convert Sigma rules to Wazuh rules☆73Updated 4 months ago
- Personal scripts☆15Updated last year
- MCP to help Defenders Detection Engineer Harder and Smarter☆199Updated this week
- Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools…☆141Updated 2 months ago
- Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.☆60Updated 7 months ago
- ☆21Updated this week
- Mapping of open-source detection rules and atomic tests.☆193Updated last year
- DShield Sensor Log Collection with ELK☆44Updated last week
- ☆40Updated 2 years ago
- Playbook-NG is a stateless web-based application used to match incident findings with countermeasures for adversary containment and evict…☆156Updated last month
- ☆20Updated 4 years ago
- ☆105Updated last month
- A curated collection of DFIR skills and workflows for InfoSec practitioners.☆236Updated 2 weeks ago
- Docker image for Velocidex Velociraptor☆145Updated last month
- Useful scripts for those administering Wazuh☆91Updated 3 weeks ago
- Repo to hold wazuh manager mcp server☆73Updated 4 months ago
- VirtualGHOST Detection Tool☆104Updated last month
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆71Updated 4 years ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆169Updated last month
- Have you ever wanted to search a link or IP address on multiple OSINT pages at once?☆59Updated 6 months ago
- An index of publicly available and open-source threat detection rulesets.☆131Updated 9 months ago
- Research repository tracking affected IPs from the Fortigate CVE-2022-40684 configuration leak by Belsen Group☆86Updated last year
- A security analysis tool that identifies DNS queries made by browser extensions, empowering security teams to detect and investigate susp…☆185Updated 11 months ago
- OpenCTI–Wazuh connector looking for indicators in Wazuh and creating sightings☆22Updated last year
- Finding ClickFix and FakeCAPTCHA like it's 1999☆120Updated this week
- Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations☆102Updated 5 months ago