Main Sigma Rule Repository
-
Updated
Dec 15, 2023 - Python
Main Sigma Rule Repository
PyGraphistry is a Python library to quickly load, shape, embed, and explore big graphs with the GPU-accelerated Graphistry visual graph analyzer
Test your code without writing mocks with ephemeral Docker containers 📦 Setup popular services with just a couple lines of code ⏱️ No bash, no yaml, only code 💻
A Splunk app mapped to MITRE ATT&CK to guide your threat hunts
Splunk Security Content
Semantic Logger is a feature rich logging framework, and replacement for existing Ruby & Rails loggers.
Zentral is a high-visibility platform for controlling Apple endpoints in enterprises. It brings great observability to IT and makes tracking & reporting compliance much less manual.
A list of useful Detection Engineering-related resources.
Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.
Timeline of Active Directory changes with replication metadata
Helm charts associated with kubernetes plug-ins
Don't Just Search OSINT. Sweep It.
Awesome list of keywords for Threat Hunting sessions
Cloud security monitoring tool and framework
💥 🚀 封装sparkstreaming动态调节batch time(有数据就执行计算);🚀 支持运行过程中增删topic;🚀 封装sparkstreaming 1.6 - kafka 010 用以支持 SSL。
A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon
Splunk@Splunk's Ansible role for installing Splunk, upgrading Splunk, and installing apps/addons on Splunk deployments (VM/bare metal)
Add a description, image, and links to the splunk topic page so that developers can more easily learn about it.
To associate your repository with the splunk topic, visit your repo's landing page and select "manage topics."