u-siem / u-siem-coreLinks
Framework definitions that allow to build a custom SIEM.
☆28Updated last year
Alternatives and similar repositories for u-siem-core
Users that are interested in u-siem-core are comparing it to the libraries listed below
Sorting:
- A cross platform forensic parser written in Rust!☆98Updated last week
- A Rust library for parsing and evaluating Sigma rules☆16Updated 6 months ago
- Cyber threat intelligence crates for Rust☆16Updated last year
- A parser for the MFT (Master File Table) format☆149Updated last month
- Rust bindings for VirusTotal/Yara☆80Updated 8 months ago
- Golang library that implements a sigma log rule parser and match engine.☆101Updated last year
- A document tagging library☆30Updated 7 months ago
- A Go implementation and parser for Sigma rules.☆92Updated 5 months ago
- Threat hunting with Sysmon and ArangoDB Graphs☆12Updated 5 years ago
- Rust implementation of the DCSO Bloom filter☆29Updated 3 months ago
- Signature engine for all your logs☆173Updated last year
- Artifact collection tool for *nix systems☆213Updated last year
- A CALDERA plugin☆79Updated 3 weeks ago
- Cisco Orbital - Osquery queries by Talos☆135Updated last year
- SOARCA - The Open Source CACAO-based Security Orchestrator!☆93Updated 2 months ago
- LOKI2 - Simple IOC and YARA Scanner☆103Updated 4 months ago
- A Fast (and safe) parser for the Windows XML Event Log (EVTX) format☆821Updated last week
- Safe and performant YARA rules evaluator in Rust☆67Updated last week
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆52Updated last week
- SIEGMA - Transform Sigma rules into SIEM consumables☆157Updated 7 months ago
- Sigma rules from Joe Security☆224Updated last year
- FIM is an Open Source Host-based file integrity monitoring tool that performs file system analysis, file integrity checking, real time al…☆164Updated 3 weeks ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆164Updated last month
- An opensource sigma conversion tool built using pysigma☆143Updated 3 weeks ago
- OSSEM Detection Model☆180Updated 3 years ago
- Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).☆416Updated last year
- ☆166Updated 4 years ago
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆208Updated this week
- An implementation of a Windows Event Collector server running on GNU/Linux.☆81Updated 3 weeks ago
- ☆224Updated 2 years ago