Daemon to ban hosts that cause multiple authentication errors
python
macos
linux
security
monitoring
bsd
ids
intrusion-detection
hids
fail2ban
intrusion-prevention
gplv2
ban-hosts
ips
anti-bot
attack-prevention
loganalyzer
security-tools
ban-management
-
Updated
Jul 9, 2022 - Python
Someone should map publicly available EVTX samples to Sigma rules. This would enable us to automatically test the correctness of generated queries.
Known security-related EVTX repositories:
Feel free to extend the list.
Mapping should be:
Sigma rule -> Repository/EVTX ( -> expected matched