
pySigma
Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)
defensive-toolsintrusion-detectionlog-analysis+2
597

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)

DShield Sensor Log Collection with ELK

A Zeek OpenVPN protocol analyzer plugin.

Parse, filter, and visualize Suricata eve.json logs with CLI tools for alerts, flows, DNS, and payloads. Includes a tutorial for learning Suricata…

Bro analyzer that detects Google's QUIC protocol