u-siem / u-siem-coreLinks
Framework definitions that allow to build a custom SIEM.
☆28Updated last year
Alternatives and similar repositories for u-siem-core
Users that are interested in u-siem-core are comparing it to the libraries listed below
Sorting:
- A cross platform forensic parser written in Rust!☆98Updated last week
- A Rust library for parsing and evaluating Sigma rules☆15Updated 5 months ago
- Cyber threat intelligence crates for Rust☆16Updated last year
- Rust bindings for VirusTotal/Yara☆78Updated 7 months ago
- A parser for the MFT (Master File Table) format☆147Updated last week
- Golang library that implements a sigma log rule parser and match engine.☆100Updated last year
- Rust implementation of the DCSO Bloom filter☆28Updated 3 months ago
- Safe and performant YARA rules evaluator in Rust☆66Updated last month
- siquery, a Rust osquery implementation to query system information☆59Updated 4 months ago
- A document tagging library☆30Updated 6 months ago
- A Fast (and safe) parser for the Windows XML Event Log (EVTX) format☆802Updated last month
- FIM is an Open Source Host-based file integrity monitoring tool that performs file system analysis, file integrity checking, real time al…☆164Updated last week
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆53Updated this week
- A Go implementation and parser for Sigma rules.☆92Updated 5 months ago
- LOKI2 - Simple IOC and YARA Scanner☆102Updated 3 months ago
- Graph platform for Detection and Response☆700Updated 2 years ago
- Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).☆416Updated last year
- An implementation of a Windows Event Collector server running on GNU/Linux.☆77Updated this week
- PAL (Pcap Analysis Library)☆102Updated 2 months ago
- A Rust library for managing eBPF programs.☆122Updated last year
- Signature engine for all your logs☆171Updated last year
- Threat hunting with Sysmon and ArangoDB Graphs☆12Updated 5 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆79Updated 4 months ago
- A standard for reducing log volume without sacrificing analytical capability☆210Updated 7 months ago
- Zeek-Formatted Threat Intelligence Feeds☆379Updated this week
- This crate provides functions for working with IPv4 CIDRs and IPv6 CIDRs.☆33Updated 2 months ago
- Security Aware Wire Protocol parsing library☆40Updated last year
- SOARCA - The Open Source CACAO-based Security Orchestrator!☆83Updated last month
- Cross-platform network scan library. Written in Rust.☆44Updated 5 months ago
- ☆166Updated 4 years ago