u-siem / u-siem-core
Framework definitions that allow to build a custom SIEM.
☆26Updated 7 months ago
Alternatives and similar repositories for u-siem-core:
Users that are interested in u-siem-core are comparing it to the libraries listed below
- A cross platform forensic parser written in Rust!☆81Updated this week
- A Rust library for parsing and evaluating Sigma rules☆11Updated this week
- Convert Sigma Rules to different formats☆11Updated 9 months ago
- A document tagging library☆30Updated last month
- Safe and performant YARA rules evaluator in Rust☆47Updated this week
- Rust implementation of the DCSO Bloom filter☆27Updated last month
- Rust bindings for VirusTotal/Yara☆76Updated 2 months ago
- Cyber threat intelligence crates for Rust☆15Updated last year
- A forensic evidence acquirer☆86Updated 4 years ago
- A parser for the MFT (Master File Table) format☆138Updated last year
- LOKI2 - Simple IOC and YARA Scanner☆93Updated 9 months ago
- siquery, a Rust osquery implementation to query system information☆59Updated 2 years ago
- Forensic framework to build tools that can be reused in multiple projects without changing anything☆27Updated 2 months ago
- Signature engine for all your logs☆168Updated last year
- Indicators of compromise, YARA rules, and Python scripts to supplement the SANS CTI Summit 2021 talk: "xStart when you're ready".☆14Updated 3 years ago
- Artifact collection tool for *nix systems☆204Updated last year
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆44Updated this week
- A Go implementation and parser for Sigma rules.☆88Updated 8 months ago
- Cross-platform network scan library. Written in Rust.☆44Updated 2 weeks ago
- WhiteBeam: Transparent endpoint security☆101Updated 2 years ago
- A CALDERA plugin☆76Updated 2 weeks ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆80Updated last week
- Synthetic Adversarial Log Objects: A Framework for synthentic log generation☆81Updated last year
- Threat Detection & Anomaly Detection rules for popular open-source components☆51Updated 2 years ago
- An opensource sigma conversion tool built using pysigma☆125Updated 4 months ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆153Updated 2 months ago
- Cisco Orbital - Osquery queries by Talos☆132Updated 8 months ago
- Sigma Detection Rule Repository☆87Updated 4 years ago
- Fast, inline geolocation decoration of IPv4 and IPv6 addresses written in Rust☆26Updated last year
- SIEGMA - Transform Sigma rules into SIEM consumables☆149Updated 2 months ago