u-siem / u-siem-core
Framework definitions that allow to build a custom SIEM.
☆25Updated 6 months ago
Alternatives and similar repositories for u-siem-core:
Users that are interested in u-siem-core are comparing it to the libraries listed below
- A cross platform forensic parser written in Rust!☆80Updated last week
- A parser for the MFT (Master File Table) format☆137Updated last year
- Cyber threat intelligence crates for Rust☆15Updated last year
- A document tagging library☆30Updated 3 weeks ago
- Convert Sigma Rules to different formats☆11Updated 8 months ago
- Safe and performant YARA rules evaluator in Rust☆46Updated 2 weeks ago
- LOKI2 - Simple IOC and YARA Scanner☆89Updated 8 months ago
- Rust bindings for VirusTotal/Yara☆75Updated last month
- A forensic evidence acquirer☆86Updated 4 years ago
- A Rust library for managing eBPF programs.☆120Updated last year
- Artifact collection tool for *nix systems☆203Updated last year
- Golang library that implements a sigma log rule parser and match engine.☆94Updated 9 months ago
- Rust implementation of the DCSO Bloom filter☆27Updated 3 weeks ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆149Updated last month
- A Go implementation and parser for Sigma rules.☆86Updated 7 months ago
- Signature engine for all your logs☆167Updated last year
- Forensic framework to build tools that can be reused in multiple projects without changing anything☆27Updated last month
- Cisco Orbital - Osquery queries by Talos☆132Updated 7 months ago
- Sigma Detection Rule Repository☆87Updated 4 years ago
- Import specific data sources into the Sigma generic and open signature format.☆78Updated 2 years ago
- siquery, a Rust osquery implementation to query system information☆59Updated 2 years ago
- Threat hunting with Sysmon and ArangoDB Graphs☆11Updated 5 years ago
- Security Aware Wire Protocol parsing library☆38Updated 6 months ago
- Synthetic Adversarial Log Objects: A Framework for synthentic log generation☆81Updated last year
- Windows Thingies... but in Rust☆23Updated 2 years ago
- A CALDERA plugin☆76Updated last month
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆44Updated this week
- Alternative YARA scanning engine☆70Updated 2 years ago
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆126Updated last year
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated this week