All Projects → sysmon-splunk-app → Similar Projects or Alternatives

49 Open source projects that are alternatives of or similar to sysmon-splunk-app

TA-Sysmon-deploy
Deploy and maintain Symon through the Splunk Deployment Sever
Stars: ✭ 31 (-26.19%)
Mutual labels:  splunk, sysmon
Sigma
Generic Signature Format for SIEM Systems
Stars: ✭ 4,418 (+10419.05%)
Mutual labels:  splunk, sysmon
TA-opnsense
Splunk Add on for OPNsense firewall
Stars: ✭ 13 (-69.05%)
Mutual labels:  splunk
detection-rules
Threat Detection & Anomaly Detection rules for popular open-source components
Stars: ✭ 34 (-19.05%)
Mutual labels:  splunk
maple
Type-safe, consistently named and formatted, structured logging wrapper for SLF4J that's ideally suited for your logging aggregator.
Stars: ✭ 39 (-7.14%)
Mutual labels:  splunk
twitter-aws-comprehend
An app to analyze tweets using Amazon Comprehend's Sentiment Analysis service
Stars: ✭ 13 (-69.05%)
Mutual labels:  splunk
Splunk TA paloalto
The Palo Alto Networks Add-on for Splunk allows a Splunk® Enterprise or Splunk Cloud administrator to collect data from Palo Alto Networks Next-Generation Firewall devices and Advanced Endpoint Protection.
Stars: ✭ 15 (-64.29%)
Mutual labels:  splunk
system-monitor
Qt based replacement for gnome system monitor
Stars: ✭ 16 (-61.9%)
Mutual labels:  sysmon
terraform-splunk-log-export
Deploy Google Cloud log export to Splunk using Terraform
Stars: ✭ 26 (-38.1%)
Mutual labels:  splunk
splunk-hec-go
Splunk HTTP Event Collector (HEC) Golang library
Stars: ✭ 19 (-54.76%)
Mutual labels:  splunk
vault-plugin-splunk
Vault plugin to securely manage Splunk admin accounts and password rotation
Stars: ✭ 23 (-45.24%)
Mutual labels:  splunk
semantic logger
Semantic Logger is a feature rich logging framework, and replacement for existing Ruby & Rails loggers.
Stars: ✭ 730 (+1638.1%)
Mutual labels:  splunk
SplunkScriplets
Various Splunk Scripts and applets, all in one place
Stars: ✭ 24 (-42.86%)
Mutual labels:  splunk
splunk-connect-for-ethereum
Splunk Connect for Ethereum
Stars: ✭ 50 (+19.05%)
Mutual labels:  splunk
splunk modinput prometheus
A Splunk modular input for ingesting Prometheus metrics
Stars: ✭ 40 (-4.76%)
Mutual labels:  splunk
SysmonConfigPusher
Pushes Sysmon Configs
Stars: ✭ 59 (+40.48%)
Mutual labels:  sysmon
TA-dmarc
Add-on for ingesting DMARC aggregate reports into Splunk
Stars: ✭ 14 (-66.67%)
Mutual labels:  splunk
evtx2json
A tool to convert Windows evtx files (Windows Event Log Files) into JSON format and log to Splunk (optional) using HTTP Event Collector.
Stars: ✭ 38 (-9.52%)
Mutual labels:  splunk
TA ETW
Splunk Technology Add-On (TA) for collecting ETW events from Windows systems
Stars: ✭ 17 (-59.52%)
Mutual labels:  splunk
splunk-connect-for-syslog
Splunk Connect for Syslog
Stars: ✭ 111 (+164.29%)
Mutual labels:  splunk
SysmonResources
Consolidation of various resources related to Microsoft Sysmon & sample data/log
Stars: ✭ 64 (+52.38%)
Mutual labels:  sysmon
SWELF
Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at https://github.com/ceramicskate0/SWELF/releases/latest.
Stars: ✭ 23 (-45.24%)
Mutual labels:  sysmon
Zircolite
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
Stars: ✭ 443 (+954.76%)
Mutual labels:  sysmon
fanuc-driver
Configurable Fanuc Focas data collector and post processor.
Stars: ✭ 38 (-9.52%)
Mutual labels:  splunk
TA-bigfix
Splunk technical add-on (TA) for ingesting BigFix client, relay, and server logs. Includes REST inputs for ingesting assets, relevant fixlets, action summaries, and analysis results.
Stars: ✭ 15 (-64.29%)
Mutual labels:  splunk
splunk handler
Python logging handler for sending logs to Splunk Enterprise
Stars: ✭ 44 (+4.76%)
Mutual labels:  splunk
ansible-role-for-splunk
Splunk@Splunk's Ansible role for installing Splunk, upgrading Splunk, and installing apps/addons on Splunk deployments (VM/bare metal)
Stars: ✭ 75 (+78.57%)
Mutual labels:  splunk
ansible-splunk-playbook
Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook
Stars: ✭ 34 (-19.05%)
Mutual labels:  splunk
splunk-otel-js-web
Splunk distribution of Open Telemetry for browser environment.
Stars: ✭ 23 (-45.24%)
Mutual labels:  splunk
vagrant-ids
An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk
Stars: ✭ 21 (-50%)
Mutual labels:  splunk
Kong-API-Manager
Kong API Manager with Prometheus And Graylog
Stars: ✭ 78 (+85.71%)
Mutual labels:  splunk
kafka-connect-splunk
Kafka Connect connector for receiving data and writing data to Splunk.
Stars: ✭ 25 (-40.48%)
Mutual labels:  splunk
config explorer
Config viewer and file editor for Splunk. Based on VSCode.
Stars: ✭ 20 (-52.38%)
Mutual labels:  splunk
spring-microservices-in-action
The source code of the book "Spring Microservices in Action (John Carnell)" and the personal summary of technical essentials about Spring Boot for microservices.
Stars: ✭ 54 (+28.57%)
Mutual labels:  splunk
Detectionlab
Automate the creation of a lab environment complete with security tooling and logging best practices
Stars: ✭ 3,237 (+7607.14%)
Mutual labels:  sysmon
Threathunter Playbook
A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.
Stars: ✭ 2,879 (+6754.76%)
Mutual labels:  sysmon
Malwless
Test Blue Team detections without running any attack.
Stars: ✭ 215 (+411.9%)
Mutual labels:  sysmon
Windowsspyblocker
WindowsSpyBlocker 🛡️ is an application written in Go and delivered as a single executable to block spying and tracking on Windows systems.
Stars: ✭ 2,913 (+6835.71%)
Mutual labels:  sysmon
Whids
Open Source EDR for Windows
Stars: ✭ 188 (+347.62%)
Mutual labels:  sysmon
Attack monitor
Endpoint detection & Malware analysis software
Stars: ✭ 186 (+342.86%)
Mutual labels:  sysmon
Shhmon
Neutering Sysmon via driver unload
Stars: ✭ 166 (+295.24%)
Mutual labels:  sysmon
Windows event logging
Windows Event Forwarding subscriptions, configuration files and scripts that assist with implementing ACSC's protect publication, Technical Guidance for Windows Event Logging.
Stars: ✭ 128 (+204.76%)
Mutual labels:  sysmon
Sysmon Modular
A repository of sysmon configuration modules
Stars: ✭ 1,229 (+2826.19%)
Mutual labels:  sysmon
Sysmontools
Utilities for Sysmon
Stars: ✭ 903 (+2050%)
Mutual labels:  sysmon
Sentinel Attack
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
Stars: ✭ 676 (+1509.52%)
Mutual labels:  sysmon
Sysmon Dfir
Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.
Stars: ✭ 654 (+1457.14%)
Mutual labels:  sysmon
Sysmonsearch
Investigate suspicious activity by visualizing Sysmon's event log
Stars: ✭ 302 (+619.05%)
Mutual labels:  sysmon
Sysmon Config
Sysmon configuration file template with default high-quality event tracing
Stars: ✭ 3,287 (+7726.19%)
Mutual labels:  sysmon
ir scripts
incident response scripts
Stars: ✭ 17 (-59.52%)
Mutual labels:  sysmon
1-49 of 49 similar projects