Repository navigation

#

siem

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

Python
2557
4 个月前

DEPRECATED - MozDef: Mozilla Enterprise Defense Platform

Python
2168
4 年前
sherifabdlnaby/elastdocker

🐳 Elastic Stack (ELK) v8+ on Docker with Compose. Pre-configured out of the box to enable Logging, Metrics, APM, Alerting, ML, and SIEM features. Up with a Single Command.

Dockerfile
2032
9 个月前
matanolabs/matano
Rust
1617
9 个月前

A collection of sources of documentation, as well as field best practices, to build/run a SOC

1518
16 天前
pfelk/pfelk
Shell
1170
1 个月前
netevert/sentinel-attack

Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK

HCL
1073
10 个月前

A collective list of public APIs for use in security. Contributions welcome

940
2 个月前

Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsacyber

PowerShell
876
5 年前

tirreno - Open Source Application Security Analytics. Understand, monitor, and protect your application from cyber threats, account threats, and abuse. Get started — free.

PHP
793
9 天前

Transform Linux Audit logs for SIEM usage

Rust
793
12 天前