All Projects → Sysmontools → Similar Projects or Alternatives

1213 Open source projects that are alternatives of or similar to Sysmontools

Sysmon Config
Sysmon configuration file template with default high-quality event tracing
Stars: ✭ 3,287 (+264.01%)
mail to misp
Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.
Stars: ✭ 61 (-93.24%)
IronNetTR
Threat research and reporting from IronNet's Threat Research Teams
Stars: ✭ 36 (-96.01%)
censys-recon-ng
recon-ng modules for Censys
Stars: ✭ 29 (-96.79%)
pybinaryedge
Python 3 Wrapper for the BinaryEdge API https://www.binaryedge.io/
Stars: ✭ 16 (-98.23%)
YAFRA
YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.
Stars: ✭ 22 (-97.56%)
sqhunter
A simple threat hunting tool based on osquery, Salt Open and Cymon API
Stars: ✭ 64 (-92.91%)
Intelowl
Intel Owl: analyze files, domains, IPs in multiple ways from a single API at scale
Stars: ✭ 2,114 (+134.11%)
Sentinel Attack
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
Stars: ✭ 676 (-25.14%)
Mutual labels:  logging, threat-hunting, sysmon
Stalkphish
StalkPhish - The Phishing kits stalker, harvesting phishing kits for investigations.
Stars: ✭ 256 (-71.65%)
Misp
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
Stars: ✭ 3,485 (+285.94%)
Patrowlhears
PatrowlHears - Vulnerability Intelligence Center / Exploits
Stars: ✭ 89 (-90.14%)
ThreatIntelligence
Tracking APT IOCs
Stars: ✭ 23 (-97.45%)
Sigma
Generic Signature Format for SIEM Systems
Stars: ✭ 4,418 (+389.26%)
Mutual labels:  monitoring, logging, sysmon
Malware Feed
Bringing you the best of the worst files on the Internet.
Stars: ✭ 69 (-92.36%)
OSINT-Brazuca
Repositório criado com intuito de reunir informações, fontes(websites/portais) e tricks de OSINT dentro do contexto Brasil.
Stars: ✭ 508 (-43.74%)
Threatbus
🚌 The missing link to connect open-source threat intelligence tools.
Stars: ✭ 139 (-84.61%)
Threatingestor
Extract and aggregate threat intelligence.
Stars: ✭ 439 (-51.38%)
Applicationinsights Home
Application Insights main repository for documentation of overall SDK offerings for all platforms.
Stars: ✭ 221 (-75.53%)
Mutual labels:  monitoring, logging
Applicationinsights Node.js
Microsoft Application Insights SDK for Node.js
Stars: ✭ 229 (-74.64%)
Mutual labels:  monitoring, logging
evtx-hunter
evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.
Stars: ✭ 122 (-86.49%)
Mutual labels:  threat-hunting, netsec
Vfeed
The Correlated CVE Vulnerability And Threat Intelligence Database API
Stars: ✭ 826 (-8.53%)
Mutual labels:  threat-intelligence, threatintel
Public-Intelligence-Feeds
Standard-Format Threat Intelligence Feeds
Stars: ✭ 60 (-93.36%)
Mutual labels:  threatintel, threat-intelligence
csirtg-smrt-v1
the fastest way to consume threat intelligence.
Stars: ✭ 27 (-97.01%)
Mutual labels:  threat-hunting, threatintel
Malware-Sample-Sources
Malware Sample Sources
Stars: ✭ 214 (-76.3%)
Logbook
An extensible Java library for HTTP request and response logging
Stars: ✭ 822 (-8.97%)
Mutual labels:  monitoring, logging
Golib
Go Library [DEPRECATED]
Stars: ✭ 194 (-78.52%)
Mutual labels:  monitoring, logging
Sematext Agent Docker
Sematext Docker Agent - host + container metrics, logs & event collector
Stars: ✭ 194 (-78.52%)
Mutual labels:  monitoring, logging
Exceptionless
Exceptionless server and jobs
Stars: ✭ 2,107 (+133.33%)
Mutual labels:  monitoring, logging
awesome-malware-analysis
Defund the Police.
Stars: ✭ 9,181 (+916.72%)
Mutual labels:  threatintel, threat-intelligence
MindMaps
#ThreatHunting #DFIR #Malware #Detection Mind Maps
Stars: ✭ 224 (-75.19%)
SysmonResources
Consolidation of various resources related to Microsoft Sysmon & sample data/log
Stars: ✭ 64 (-92.91%)
Mutual labels:  sysmon, threat-hunting
TA-Sysmon-deploy
Deploy and maintain Symon through the Splunk Deployment Sever
Stars: ✭ 31 (-96.57%)
Mutual labels:  sysmon, threat-hunting
Logsuck
Easy log aggregation, indexing and searching
Stars: ✭ 154 (-82.95%)
Mutual labels:  monitoring, logging
pyeti
Python bindings for Yeti's API
Stars: ✭ 15 (-98.34%)
Mutual labels:  threat-hunting, threatintel
MurMurHash
This little tool is to calculate a MurmurHash value of a favicon to hunt phishing websites on the Shodan platform.
Stars: ✭ 79 (-91.25%)
Mutual labels:  threatintel, threat-intelligence
Azure-Sentinel-4-SecOps
Microsoft Sentinel SOC Operations
Stars: ✭ 140 (-84.5%)
SSHapendoes
Capture passwords of login attempts on non-existent and disabled accounts.
Stars: ✭ 31 (-96.57%)
Scrummage
The Ultimate OSINT and Threat Hunting Framework
Stars: ✭ 355 (-60.69%)
Volkszaehler.org
Open Source Smart Meter with focus on privacy - you remain the master of your data.
Stars: ✭ 150 (-83.39%)
Mutual labels:  monitoring, logging
malware-persistence
Collection of malware persistence and hunting information. Be a persistent persistence hunter!
Stars: ✭ 109 (-87.93%)
SysmonConfigPusher
Pushes Sysmon Configs
Stars: ✭ 59 (-93.47%)
Mutual labels:  sysmon, threat-hunting
AutonomousThreatSweep
Threat Hunting queries for various attacks
Stars: ✭ 70 (-92.25%)
rstthreats
Aggregated Indicators of Compromise collected and cross-verified from multiple open and community-supported sources, enriched and ranked using our intelligence platform for you. Threat Intelligence, Threat feed, Open source feed.
Stars: ✭ 17 (-98.12%)
Mutual labels:  threatintel, threat-intelligence
Harpoon
CLI tool for open source and threat intelligence
Stars: ✭ 679 (-24.81%)
Mutual labels:  threat-intelligence, threatintel
best-practices-in-threat-intelligence
Best practices in threat intelligence
Stars: ✭ 38 (-95.79%)
Mutual labels:  threatintel, threat-intelligence
Threatpinchlookup
Documentation and Sharing Repository for ThreatPinch Lookup Chrome & Firefox Extension
Stars: ✭ 257 (-71.54%)
Mutual labels:  threat-hunting, threatintel
Dnstwist
Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation
Stars: ✭ 3,124 (+245.96%)
Misp Galaxy
Clusters and elements to attach to MISP events or attributes (like threat actors)
Stars: ✭ 276 (-69.44%)
Python Iocextract
Defanged Indicator of Compromise (IOC) Extractor.
Stars: ✭ 300 (-66.78%)
Mutual labels:  threat-intelligence, threatintel
Analog
PHP logging library that is highly extendable and simple to use.
Stars: ✭ 314 (-65.23%)
Mutual labels:  monitoring, logging
Longview
Linode Longview Agent
Stars: ✭ 319 (-64.67%)
Mutual labels:  monitoring, logging
Patrowlmanager
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
Stars: ✭ 363 (-59.8%)
Applicationinsights Dotnet
ApplicationInsights-dotnet
Stars: ✭ 367 (-59.36%)
Mutual labels:  monitoring, logging
Riemann
A network event stream processing system, in Clojure.
Stars: ✭ 4,099 (+353.93%)
Mutual labels:  monitoring, logging
Ckss Certified Kubernetes Security Specialist
This repository is a collection of resources to prepare for the Certified Kubernetes Security Specialist (CKSS) exam.
Stars: ✭ 333 (-63.12%)
Mutual labels:  monitoring, logging
Log Process Errors
Show some ❤️ to Node.js process errors
Stars: ✭ 424 (-53.05%)
Mutual labels:  monitoring, logging
Spiderfoot
SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
Stars: ✭ 6,882 (+662.13%)
Mutual labels:  threatintel, threat-intelligence
Applicationinsights Go
Microsoft Application Insights SDK for Go
Stars: ✭ 113 (-87.49%)
Mutual labels:  monitoring, logging
Applicationinsights Python
Application Insights SDK for Python
Stars: ✭ 114 (-87.38%)
Mutual labels:  monitoring, logging
1-60 of 1213 similar projects