All Projects → Sysmon Config → Similar Projects or Alternatives

1170 Open source projects that are alternatives of or similar to Sysmon Config

Sysmontools
Utilities for Sysmon
Stars: ✭ 903 (-72.53%)
Sentinel Attack
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
Stars: ✭ 676 (-79.43%)
Mutual labels:  logging, threat-hunting, sysmon
Sigma
Generic Signature Format for SIEM Systems
Stars: ✭ 4,418 (+34.41%)
Mutual labels:  monitoring, logging, sysmon
Ee Outliers
Open-source framework to detect outliers in Elasticsearch events
Stars: ✭ 172 (-94.77%)
Mutual labels:  threat-hunting, netsec
Stalkphish
StalkPhish - The Phishing kits stalker, harvesting phishing kits for investigations.
Stars: ✭ 256 (-92.21%)
Mutual labels:  threat-hunting, threatintel
Bearded Avenger
CIF v3 -- the fastest way to consume threat intelligence
Stars: ✭ 152 (-95.38%)
Mutual labels:  threat-hunting, threatintel
Applicationinsights Dotnet
ApplicationInsights-dotnet
Stars: ✭ 367 (-88.83%)
Mutual labels:  monitoring, logging
Ckss Certified Kubernetes Security Specialist
This repository is a collection of resources to prepare for the Certified Kubernetes Security Specialist (CKSS) exam.
Stars: ✭ 333 (-89.87%)
Mutual labels:  monitoring, logging
Riemann
A network event stream processing system, in Clojure.
Stars: ✭ 4,099 (+24.7%)
Mutual labels:  monitoring, logging
Justlog
JustLog brings logging on iOS to the next level. It supports console, file and remote Logstash logging via TCP socket with no effort. Support for logz.io available.
Stars: ✭ 439 (-86.64%)
Mutual labels:  monitoring, logging
Applicationinsights Python
Application Insights SDK for Python
Stars: ✭ 114 (-96.53%)
Mutual labels:  monitoring, logging
Threatingestor
Extract and aggregate threat intelligence.
Stars: ✭ 439 (-86.64%)
Mutual labels:  threat-hunting, threatintel
Yeti
Your Everyday Threat Intelligence
Stars: ✭ 1,037 (-68.45%)
Mutual labels:  threat-hunting, threatintel
Intelowl
Intel Owl: analyze files, domains, IPs in multiple ways from a single API at scale
Stars: ✭ 2,114 (-35.69%)
Mutual labels:  threat-hunting, threatintel
Sysmon Modular
A repository of sysmon configuration modules
Stars: ✭ 1,229 (-62.61%)
Mutual labels:  threat-hunting, sysmon
Analog
PHP logging library that is highly extendable and simple to use.
Stars: ✭ 314 (-90.45%)
Mutual labels:  monitoring, logging
Longview
Linode Longview Agent
Stars: ✭ 319 (-90.3%)
Mutual labels:  monitoring, logging
IronNetTR
Threat research and reporting from IronNet's Threat Research Teams
Stars: ✭ 36 (-98.9%)
Mutual labels:  threat-hunting, threatintel
Whids
Open Source EDR for Windows
Stars: ✭ 188 (-94.28%)
Mutual labels:  threat-hunting, sysmon
Applicationinsights Php
Azure Application Insights SDK for PHP
Stars: ✭ 98 (-97.02%)
Mutual labels:  monitoring, logging
Applicationinsights Dotnet Logging
.NET Logging adaptors
Stars: ✭ 100 (-96.96%)
Mutual labels:  monitoring, logging
Volkszaehler.org
Open Source Smart Meter with focus on privacy - you remain the master of your data.
Stars: ✭ 150 (-95.44%)
Mutual labels:  monitoring, logging
Sematext Agent Docker
Sematext Docker Agent - host + container metrics, logs & event collector
Stars: ✭ 194 (-94.1%)
Mutual labels:  monitoring, logging
Golib
Go Library [DEPRECATED]
Stars: ✭ 194 (-94.1%)
Mutual labels:  monitoring, logging
Applicationinsights Home
Application Insights main repository for documentation of overall SDK offerings for all platforms.
Stars: ✭ 221 (-93.28%)
Mutual labels:  monitoring, logging
SysmonResources
Consolidation of various resources related to Microsoft Sysmon & sample data/log
Stars: ✭ 64 (-98.05%)
Mutual labels:  sysmon, threat-hunting
Misp
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
Stars: ✭ 3,485 (+6.02%)
Mutual labels:  threat-hunting, threatintel
evtx-hunter
evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.
Stars: ✭ 122 (-96.29%)
Mutual labels:  threat-hunting, netsec
Malware Feed
Bringing you the best of the worst files on the Internet.
Stars: ✭ 69 (-97.9%)
Mutual labels:  threat-hunting, threatintel
ThreatIntelligence
Tracking APT IOCs
Stars: ✭ 23 (-99.3%)
Mutual labels:  threat-hunting, threatintel
Threatbus
🚌 The missing link to connect open-source threat intelligence tools.
Stars: ✭ 139 (-95.77%)
Mutual labels:  threat-hunting, threatintel
Patrowlhears
PatrowlHears - Vulnerability Intelligence Center / Exploits
Stars: ✭ 89 (-97.29%)
Mutual labels:  threat-hunting, threatintel
pybinaryedge
Python 3 Wrapper for the BinaryEdge API https://www.binaryedge.io/
Stars: ✭ 16 (-99.51%)
Mutual labels:  threat-hunting, threatintel
mail to misp
Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.
Stars: ✭ 61 (-98.14%)
Mutual labels:  threat-hunting, threatintel
Windows event logging
Windows Event Forwarding subscriptions, configuration files and scripts that assist with implementing ACSC's protect publication, Technical Guidance for Windows Event Logging.
Stars: ✭ 128 (-96.11%)
Mutual labels:  logging, sysmon
csirtg-smrt-v1
the fastest way to consume threat intelligence.
Stars: ✭ 27 (-99.18%)
Mutual labels:  threat-hunting, threatintel
Threatpinchlookup
Documentation and Sharing Repository for ThreatPinch Lookup Chrome & Firefox Extension
Stars: ✭ 257 (-92.18%)
Mutual labels:  threat-hunting, threatintel
Threathunter Playbook
A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.
Stars: ✭ 2,879 (-12.41%)
Mutual labels:  threat-hunting, sysmon
OSINT-Brazuca
Repositório criado com intuito de reunir informações, fontes(websites/portais) e tricks de OSINT dentro do contexto Brasil.
Stars: ✭ 508 (-84.55%)
Mutual labels:  threat-hunting, threatintel
Log Process Errors
Show some ❤️ to Node.js process errors
Stars: ✭ 424 (-87.1%)
Mutual labels:  monitoring, logging
YAFRA
YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.
Stars: ✭ 22 (-99.33%)
Mutual labels:  threat-hunting, threatintel
TA-Sysmon-deploy
Deploy and maintain Symon through the Splunk Deployment Sever
Stars: ✭ 31 (-99.06%)
Mutual labels:  sysmon, threat-hunting
ir scripts
incident response scripts
Stars: ✭ 17 (-99.48%)
Mutual labels:  sysmon, threat-hunting
Xsrv
[mirror] Install and manage self-hosted services/applications, on your own server(s) - ansible collection and utilities
Stars: ✭ 89 (-97.29%)
Mutual labels:  monitoring, logging
Applicationinsights Go
Microsoft Application Insights SDK for Go
Stars: ✭ 113 (-96.56%)
Mutual labels:  monitoring, logging
Tail
[Revamped] Go package for reading from continuously updated files (tail -f)
Stars: ✭ 81 (-97.54%)
Mutual labels:  monitoring, logging
Exceptionless
Exceptionless server and jobs
Stars: ✭ 2,107 (-35.9%)
Mutual labels:  monitoring, logging
Logsuck
Easy log aggregation, indexing and searching
Stars: ✭ 154 (-95.31%)
Mutual labels:  monitoring, logging
pyeti
Python bindings for Yeti's API
Stars: ✭ 15 (-99.54%)
Mutual labels:  threat-hunting, threatintel
SysmonConfigPusher
Pushes Sysmon Configs
Stars: ✭ 59 (-98.21%)
Mutual labels:  sysmon, threat-hunting
Logbook
An extensible Java library for HTTP request and response logging
Stars: ✭ 822 (-74.99%)
Mutual labels:  monitoring, logging
Applicationinsights Node.js
Microsoft Application Insights SDK for Node.js
Stars: ✭ 229 (-93.03%)
Mutual labels:  monitoring, logging
censys-recon-ng
recon-ng modules for Censys
Stars: ✭ 29 (-99.12%)
Mutual labels:  threat-hunting, threatintel
sqhunter
A simple threat hunting tool based on osquery, Salt Open and Cymon API
Stars: ✭ 64 (-98.05%)
Mutual labels:  threat-hunting, threatintel
Threat-Intel-Slack-Bot
Interactive Threat Intelligence Bot that leverages serverless framework, AWS/GCP, and Slack
Stars: ✭ 26 (-99.21%)
Mutual labels:  threatintel
Gohalt
Gohalt 👮‍♀🛑: Fast; Simple; Powerful; Go Throttler library
Stars: ✭ 253 (-92.3%)
Mutual labels:  monitoring
iocingestor
An extendable tool to extract and aggregate IoCs from threat feeds
Stars: ✭ 25 (-99.24%)
Mutual labels:  threatintel
Perfmon Agent
Server metrics fetching agent, based on SIGAR
Stars: ✭ 264 (-91.97%)
Mutual labels:  monitoring
rhq
Recon Hunt Queries
Stars: ✭ 66 (-97.99%)
Mutual labels:  threat-hunting
blue-teaming-with-kql
Repository with Sample KQL Query examples for Threat Hunting
Stars: ✭ 102 (-96.9%)
Mutual labels:  threat-hunting
1-60 of 1170 similar projects