Here are
110 public repositories
matching this topic...
Free and open source log management
Updated
Aug 14, 2020
Java
Generic Signature Format for SIEM Systems
Updated
Aug 13, 2020
Python
MozDef: Mozilla Enterprise Defense Platform
Updated
Aug 11, 2020
Python
Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsacyber
Updated
Jan 22, 2020
PowerShell
Nzyme collects 802.11 management frames directly from the air and sends them to a Graylog (Open Source log management) setup for WiFi IDS, monitoring, and incident response. It only needs a JVM and a WiFi adapter that supports monitor mode.
Updated
Aug 16, 2020
Java
A collective list of public JSON APIs for use in security. Contributions welcome
A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.
Updated
Feb 27, 2020
PowerShell
Sagan uses a 'Snort like' engine and rules to analyze logs (syslog/event log/snmptrap/netflow/etc)
A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework
Updated
Nov 8, 2019
PowerShell
Security event correlation engine for ELK stack
Test Blue Team detections without running any attack.
🔮 Visibility Across Space and Time
Open-source framework to detect outliers in Elasticsearch events
Updated
Aug 14, 2020
Python
Automated Use Case Testing
SIEM Tactics, Techiques, and Procedures
Splunk code (SPL) useful for serious threat hunters.
SIAC is an enterprise SIEM built on open-source technology.
Open Source SIEM (Security Information and Event Management system).
Updated
Jun 5, 2020
Python
Threat Alert Logic Repository
Updated
Feb 7, 2019
Shell
Curated list of awesome cybersecurity companies and solutions.
A robust, and flexible open source User & Entity Behavior Analytics (UEBA) framework used for Security Analytics. Developed with luv by Data Scientists & Security Analysts from the Cyber Security Industry. [PRE-ALPHA]
Updated
May 25, 2020
Python
Tools to create a Native Windows Audit Collection Platform. Active Directory example provided
Updated
Nov 5, 2019
PowerShell
Open Source ETL designed for and dedicated to Log processing and transformation
Updated
Jun 30, 2020
Java
Import specific data sources into the Sigma generic and open signature format.
A Lambda-powered Security Orchestration framework for AWS GuardDuty
Updated
Dec 15, 2019
Python
Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.
Updated
Jun 1, 2020
Shell
Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook
Updated
May 24, 2020
Shell
A SIEM inspired by HECTOR, built on Django.
Updated
Apr 16, 2019
Python
Improve this page
Add a description, image, and links to the
siem
topic page so that developers can more easily learn about it.
Curate this topic
Add this topic to your repo
To associate your repository with the
siem
topic, visit your repo's landing page and select "manage topics."
Learn more
You can’t perform that action at this time.
You signed in with another tab or window. Reload to refresh your session.
You signed out in another tab or window. Reload to refresh your session.