u-siem / u-siem-coreLinks
Framework definitions that allow to build a custom SIEM.
☆27Updated 9 months ago
Alternatives and similar repositories for u-siem-core
Users that are interested in u-siem-core are comparing it to the libraries listed below
Sorting:
- A cross platform forensic parser written in Rust!☆83Updated this week
- A Rust library for parsing and evaluating Sigma rules☆13Updated 2 months ago
- Cyber threat intelligence crates for Rust☆15Updated last year
- A parser for the MFT (Master File Table) format☆142Updated last year
- Rust bindings for VirusTotal/Yara☆78Updated 4 months ago
- FIM is an Open Source Host-based file integrity monitoring tool that performs file system analysis, file integrity checking, real time al…☆161Updated 2 months ago
- A Rust library for managing eBPF programs.☆120Updated last year
- Rust implementation of the DCSO Bloom filter☆28Updated 3 months ago
- Safe and performant YARA rules evaluator in Rust☆65Updated last week
- Artifact collection tool for *nix systems☆209Updated last year
- PAL (Pcap Analysis Library)☆100Updated 7 months ago
- Convert Sigma Rules to different formats☆11Updated 11 months ago
- siquery, a Rust osquery implementation to query system information☆59Updated last month
- Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).☆412Updated last year
- This crate provides functions for working with IPv4 CIDRs and IPv6 CIDRs.☆33Updated last year
- A Fast (and safe) parser for the Windows XML Event Log (EVTX) format☆770Updated this week
- Signature engine for all your logs☆169Updated last year
- Cisco Orbital - Osquery queries by Talos☆134Updated 10 months ago
- A forensic evidence acquirer☆86Updated 4 years ago
- A standard for reducing log volume without sacrificing analytical capability☆206Updated 4 months ago
- Security Aware Wire Protocol parsing library☆39Updated 9 months ago
- LOKI2 - Simple IOC and YARA Scanner☆97Updated 2 weeks ago
- A document tagging library☆30Updated 3 months ago
- Graph platform for Detection and Response☆694Updated 2 years ago
- NIST-based CVE lookup store and API powered by Rust.☆131Updated 2 weeks ago
- ☆221Updated last year
- PCAP/PCAPNG file format parser written in pure Rust. Fast, zero-copy, safe.☆127Updated last week
- Golang library that implements a sigma log rule parser and match engine.☆95Updated last year
- Sigma rules from Joe Security☆217Updated 8 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆151Updated 4 months ago