
pySigma
Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)
defensive-toolsintrusion-detectionlog-analysis+2
597

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)

DShield Sensor Log Collection with ELK

Parse, filter, and visualize Suricata eve.json logs with CLI tools for alerts, flows, DNS, and payloads. Includes a tutorial for learning Suricata…

A Zeek OpenVPN protocol analyzer plugin.

Bro analyzer that detects Google's QUIC protocol