This repository will describe the details surrounding the SIEM (wazuh) mini project, which will cover all aspects of topology design, deployment, rules, integration, and fine tune.
-
Updated
Mar 19, 2023
This repository will describe the details surrounding the SIEM (wazuh) mini project, which will cover all aspects of topology design, deployment, rules, integration, and fine tune.
SIEM lab using Splunk for log ingestion and alerting.
Building one Solution for Threat management and detection for you network with Open source SOC solution.
This repository contains DEVO SIEM use cases covering multiple security domains and technologies. Each use case is designed to detect specific threats, suspicious activities, or policy violations with detailed response playbooks and MITRE ATT&CK mappings.
An Open-source Security Information and Event Management (SIEM) solution blended with UEBA and TI Capabilities
All About Me.
High-performance Go-based SIEM server featuring gRPC log ingestion, Elasticsearch Data Streams, NATS JetStream, rule-based alerting, Kibana dashboards, and secure C2.
Enterprise-style Wazuh SIEM capstone lab built on Ubuntu and ESXi for centralized Windows endpoint monitoring, threat detection, CIS benchmarking, and vulnerability management.
Automatically downloads, parses, and synchronizes Sigma rules into various SIEM formats.
Open-source Linux endpoint security agent built with Go and eBPF for real-time kernel event monitoring, log streaming, and centralized security visibility.
Advanced CyberSecurity Defence System (ACDS)
Add a description, image, and links to the siem-development topic page so that developers can more easily learn about it.
To associate your repository with the siem-development topic, visit your repo's landing page and select "manage topics."