Repository navigation

#

siem

Python
9530
8 小时前

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

Python
2540
2 个月前

DEPRECATED - MozDef: Mozilla Enterprise Defense Platform

Python
2171
4 年前
sherifabdlnaby/elastdocker

🐳 Elastic Stack (ELK) v8+ on Docker with Compose. Pre-configured out of the box to enable Logging, Metrics, APM, Alerting, ML, and SIEM features. Up with a Single Command.

Dockerfile
2024
8 个月前
matanolabs/matano
Rust
1602
7 个月前

A collection of sources of documentation, as well as field best practices, to build/run a SOC

1475
14 天前
pfelk/pfelk
Shell
1157
2 个月前
netevert/sentinel-attack

Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK

HCL
1071
9 个月前

A collective list of public APIs for use in security. Contributions welcome

939
1 个月前

Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsacyber

PowerShell
880
5 年前

Transform Linux Audit logs for SIEM usage

Rust
780
8 天前

tirreno - Open Source Security Analytics. Understand, monitor, and protect your platform from cyberfraud, account threats, and abuse. Get started — free.

PHP
747
25 天前