theflakes / sigma_to_wazuh
Convert Sigma rules to Wazuh rules
☆64Updated 11 months ago
Alternatives and similar repositories for sigma_to_wazuh:
Users that are interested in sigma_to_wazuh are comparing it to the libraries listed below
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆91Updated 2 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆33Updated 4 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆149Updated last week
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated last month
- ☆33Updated last year
- Wazuh integration TheHive☆35Updated 2 years ago
- ☆31Updated 3 years ago
- A collection of tips for using MISP.☆74Updated 3 months ago
- Docker image for MISP☆123Updated 2 months ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆107Updated 2 years ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆64Updated 3 years ago
- Repository for SPEED SIEM Use Case Framework☆53Updated 4 years ago
- Dettectinator - The Python library to your DeTT&CT YAML files.☆109Updated 2 months ago
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆132Updated last year
- Docker image for Velocidex Velociraptor☆122Updated 2 weeks ago
- Resources To Learn And Understand SIGMA Rules☆173Updated 2 years ago
- An opensource sigma conversion tool built using pysigma☆121Updated 3 months ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆142Updated last month
- Rules generated from our investigations.☆192Updated this week
- These are open source rules that can be utilized with QRadar to detect various types of threats in the environment.☆54Updated 5 years ago
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆71Updated 4 months ago
- ☆67Updated 3 weeks ago
- OSSEM Data Dictionaries☆59Updated 2 months ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆39Updated 10 months ago
- Docker configurations for TheHive, Cortex and 3rd party tools☆119Updated 2 years ago
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆85Updated 3 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆163Updated last year
- Repository of public reference frameworks for the DFIR community.☆115Updated last year
- Threat Hunting & Incident Investigation with Osquery☆205Updated 2 years ago