All Projects → auditbeat-in-action → Similar Projects or Alternatives

86 Open source projects that are alternatives of or similar to auditbeat-in-action

ansible-role-auditbeat
Ansible role to install auditbeat for security monitoring. (Ruleset included)
Stars: ✭ 15 (-37.5%)
Mutual labels:  siem, auditd, auditbeat
tutorials
Tutorials
Stars: ✭ 80 (+233.33%)
Mutual labels:  filebeat
Aliware Kafka Demos
提供各种客户端接入阿里云 消息队列 Kafka 的demo工程
Stars: ✭ 279 (+1062.5%)
Mutual labels:  filebeat
docker-elk-stack
The ELK stack Docker containerization (Elasticsearch, Logstash and Kibana)
Stars: ✭ 20 (-16.67%)
Mutual labels:  filebeat
Log Pilot
Collect logs for docker containers
Stars: ✭ 1,112 (+4533.33%)
Mutual labels:  filebeat
Docker Compose Elasticsearch Kibana
Docker Compose for Elasticsearch and Kibana
Stars: ✭ 584 (+2333.33%)
Mutual labels:  filebeat
elk-stack
ELK Stack (Elasticsearch, Logstash & Kibana)
Stars: ✭ 13 (-45.83%)
Mutual labels:  filebeat
graylog-plugin-collector
Collector plugin for Graylog
Stars: ✭ 13 (-45.83%)
Mutual labels:  filebeat
Beats Docker
Official Beats Docker images
Stars: ✭ 162 (+575%)
Mutual labels:  filebeat
Malwless
Test Blue Team detections without running any attack.
Stars: ✭ 215 (+795.83%)
Mutual labels:  siem
Xcyclopedia
Encyclopedia for Executables
Stars: ✭ 148 (+516.67%)
Mutual labels:  siem
Elkstack
The config files and docker-compose.yml files of Dockerized ELK Stack
Stars: ✭ 96 (+300%)
Mutual labels:  filebeat
LogESP
Open Source SIEM (Security Information and Event Management system).
Stars: ✭ 162 (+575%)
Mutual labels:  siem
Elk
搭建ELK日志分析平台。
Stars: ✭ 688 (+2766.67%)
Mutual labels:  filebeat
LogRhythm.Tools
LogRhythm PowerShell Toolkit
Stars: ✭ 37 (+54.17%)
Mutual labels:  siem
sample-filebeat-docker-logging
Powerful Logging with Docker, FileBeat and Elasticsearch
Stars: ✭ 23 (-4.17%)
Mutual labels:  filebeat
qradar
Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.
Stars: ✭ 53 (+120.83%)
Mutual labels:  siem
chef-filebeat
Chef Cookbook to Manage Elastic Filebeat https://supermarket.chef.io/cookbooks/filebeat
Stars: ✭ 31 (+29.17%)
Mutual labels:  filebeat
elastic-stack
A complete documentation on how to install Elastic Stack on Ubuntu 16.04 Server ASAP 😎
Stars: ✭ 12 (-50%)
Mutual labels:  filebeat
Sagan
** README ** This repo has MOVED to https://github.com/quadrantsec/sagan
Stars: ✭ 236 (+883.33%)
Mutual labels:  siem
Synesis lite suricata
Suricata IDS/IPS log analytics using the Elastic Stack.
Stars: ✭ 167 (+595.83%)
Mutual labels:  filebeat
Ee Outliers
Open-source framework to detect outliers in Elasticsearch events
Stars: ✭ 172 (+616.67%)
Mutual labels:  siem
SWELF
Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at https://github.com/ceramicskate0/SWELF/releases/latest.
Stars: ✭ 23 (-4.17%)
Mutual labels:  siem
Beat Exporter
Elastic beat-exporter for Prometheus
Stars: ✭ 139 (+479.17%)
Mutual labels:  filebeat
Openuba
A robust, and flexible open source User & Entity Behavior Analytics (UEBA) framework used for Security Analytics. Developed with luv by Data Scientists & Security Analysts from the Cyber Security Industry. [PRE-ALPHA]
Stars: ✭ 127 (+429.17%)
Mutual labels:  siem
Redelk
Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.
Stars: ✭ 1,692 (+6950%)
Mutual labels:  siem
Beats
🐠 Beats - Lightweight shippers for Elasticsearch & Logstash
Stars: ✭ 10,522 (+43741.67%)
Mutual labels:  filebeat
Zircolite
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
Stars: ✭ 443 (+1745.83%)
Mutual labels:  auditd
Ansible Elk Playbook
A playbook for setting up the ELK Stack + beats log shippers on Ubuntu 16.04 and above
Stars: ✭ 83 (+245.83%)
Mutual labels:  filebeat
aushape
A library and a tool for converting audit logs to XML and JSON
Stars: ✭ 37 (+54.17%)
Mutual labels:  auditd
Puppet Filebeat
Stars: ✭ 54 (+125%)
Mutual labels:  filebeat
kafka-elk-docker-compose
Deploy ELK stack and kafka with docker-compose
Stars: ✭ 78 (+225%)
Mutual labels:  filebeat
Azure-Sentinel-4-SecOps
Microsoft Sentinel SOC Operations
Stars: ✭ 140 (+483.33%)
Mutual labels:  siem
Siac
SIAC is an enterprise SIEM built on open-source technology.
Stars: ✭ 100 (+316.67%)
Mutual labels:  siem
K8s
Important production-grade Kubernetes Ops Services
Stars: ✭ 253 (+954.17%)
Mutual labels:  filebeat
Blue-Baron
Automate creating resilient, disposable, secure and agile monitoring infrastructure for Blue Teams.
Stars: ✭ 23 (-4.17%)
Mutual labels:  siem
k8s-log
容器日志搜集套件。
Stars: ✭ 15 (-37.5%)
Mutual labels:  filebeat
ecs-logging
ECS Logging - Common resources and issues for the language specific ECS loggers
Stars: ✭ 30 (+25%)
Mutual labels:  filebeat
seahorse
ELKFH - Elastic, Logstash, Kibana, Filebeat and Honeypot (HTTP, HTTPS, SSH, RDP, VNC, Redis, MySQL, MONGO, SMB, LDAP)
Stars: ✭ 31 (+29.17%)
Mutual labels:  filebeat
pulsar-beat-output
Elastic Beats Output to Apache Pulsar
Stars: ✭ 51 (+112.5%)
Mutual labels:  filebeat
filebeat.py
Python 版 Filebeat
Stars: ✭ 48 (+100%)
Mutual labels:  filebeat
dissect-tester
Simple API/UI for testing filebeat dissect patterns against a collection of sample log lines.
Stars: ✭ 58 (+141.67%)
Mutual labels:  filebeat
Dsiem
Security event correlation engine for ELK stack
Stars: ✭ 255 (+962.5%)
Mutual labels:  siem
Docker Elastic
Deploy Elastic stack in a Docker Swarm cluster. Ship application logs and metrics using beats & GELF plugin to Elasticsearch
Stars: ✭ 202 (+741.67%)
Mutual labels:  filebeat
Vast
🔮 Visibility Across Space and Time
Stars: ✭ 227 (+845.83%)
Mutual labels:  siem
MegaDev
Bro IDS + ELK Stack to detect and block data exfiltration
Stars: ✭ 46 (+91.67%)
Mutual labels:  filebeat
Mozdef
DEPRECATED - MozDef: Mozilla Enterprise Defense Platform
Stars: ✭ 2,164 (+8916.67%)
Mutual labels:  siem
Dockerfile
some personally made dockerfile
Stars: ✭ 2,021 (+8320.83%)
Mutual labels:  filebeat
Siem
SIEM Tactics, Techiques, and Procedures
Stars: ✭ 157 (+554.17%)
Mutual labels:  siem
S1EM
This project is a SIEM with SIRP and Threat Intel, all in one.
Stars: ✭ 270 (+1025%)
Mutual labels:  filebeat
Ypsilon
Automated Use Case Testing
Stars: ✭ 135 (+462.5%)
Mutual labels:  siem
Filebeat Kubernetes
Filebeat container, alternative to fluentd used to ship kubernetes cluster and pod logs
Stars: ✭ 147 (+512.5%)
Mutual labels:  filebeat
Threathunting Spl
Splunk code (SPL) useful for serious threat hunters.
Stars: ✭ 117 (+387.5%)
Mutual labels:  siem
go-zero-looklook
🔥基于go-zero(go zero) 微服务全技术栈开发最佳实践项目。Develop best practice projects based on the full technology stack of go zero (go zero) microservices.
Stars: ✭ 2,691 (+11112.5%)
Mutual labels:  filebeat
Elk Hole
elasticsearch, logstash and kibana configuration for pi-hole visualiziation
Stars: ✭ 136 (+466.67%)
Mutual labels:  filebeat
MeetU
Application that build on Elasticsearch and Spring Boot Microservices (Synchronous Service)
Stars: ✭ 22 (-8.33%)
Mutual labels:  filebeat
SysmonConfigPusher
Pushes Sysmon Configs
Stars: ✭ 59 (+145.83%)
Mutual labels:  siem
ELK-Hunting
Threat Hunting with ELK Workshop (InfoSecWorld 2017)
Stars: ✭ 58 (+141.67%)
Mutual labels:  filebeat
LogiAM
基于日志模板构建,采集任务动态管控、数据质量精确度量,一站式日志采集平台
Stars: ✭ 199 (+729.17%)
Mutual labels:  filebeat
Vagrant Elastic Stack
Giving the Elastic Stack a try in Vagrant
Stars: ✭ 131 (+445.83%)
Mutual labels:  filebeat
1-60 of 86 similar projects