Main Sigma Rule Repository
-
Updated
May 20, 2023 - Python
Main Sigma Rule Repository
PyGraphistry is a Python library to quickly load, shape, embed, and explore big graphs with the GPU-accelerated Graphistry visual graph analyzer
Test your code without writing mocks with ephemeral Docker containers
A Splunk app mapped to MITRE ATT&CK to guide your threat hunts
Splunk Security Content
Semantic Logger is a feature rich logging framework, and replacement for existing Ruby & Rails loggers.
Zentral manages endpoint configuration for MDM, Osquery, Munki, Google Santa, and automates it's workflows through GitOps. It unifies events, collects IT asset info, and offers unique KPIs and metrics. Additionally, Zentral sources info from existing management systems, serves data for SIEMs and CMDBs, and brings efficient endpoint security posture
Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.
Timeline of Active Directory changes with replication metadata
A list of useful Detection Engineering-related resources.
Helm charts associated with kubernetes plug-ins
Don't Just Search OSINT. Sweep It.
Cloud security monitoring tool and framework
A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon
This repo will have all the data and codes I have used for my youtube channel
Splunk@Splunk's Ansible role for installing Splunk, upgrading Splunk, and installing apps/addons on Splunk deployments (VM/bare metal)
Add a description, image, and links to the splunk topic page so that developers can more easily learn about it.
To associate your repository with the splunk topic, visit your repo's landing page and select "manage topics."