
loki
Horizontally scalable, multi-tenant log aggregation system that indexes labels instead of full text, integrates with Grafana, and is optimized for…

Horizontally scalable, multi-tenant log aggregation system that indexes labels instead of full text, integrates with Grafana, and is optimized for…

Android Logs Events And Protobuf Parser

Collect, parse, normalize, aggregate, store, query, and route security telemetry data at scale using pipeline-based dataflows for threat detection…

Centralized log management platform for collecting, indexing, and analyzing streaming logs, with alerting and event correlation for security…

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Collection of Python and Perl scripts for digital forensics, incident response, and network analysis, including hash signature tooling and packet…

A Fast (and safe) parser for the Windows XML Event Log (EVTX) format

Microsoft Sentinel SIEM Log Source Analyzer

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/


Multi-threaded Windows event log forensics timeline generator and threat hunting tool with full Sigma rule support, producing CSV/JSON timelines for…

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

Audits Windows event log settings against best-practice guidelines and Sigma-rule detectability, with automated configuration for DFIR readiness.

Mapping Corelight or Zeek data to Elastic Common Schema logs

Passive Laravel middleware that detects and logs SQL injection, XSS, RCE, bot scanners, and 175+ attack patterns. Features a built-in dashboard,…

A repository to share publicly available Velociraptor detection content

A cross platform parser for Apple UnifiedLogs!

Microsoft Threat Intelligence Security Tools