siem topic
LogESP
Open Source SIEM (Security Information and Event Management system).
siemstress
Very basic CLI SIEM (Security Information and Event Management system).
PurpleCloud
A little tool to play with Azure Identity - Azure Active Directory lab creation tool
Blue-Baron
Automate creating resilient, disposable, secure and agile monitoring infrastructure for Blue Teams.
siem-from-scratch
SIEM-From-Scratch is a drop-in ELK based SIEM component for your Vagrant infosec lab
Meerkat
A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.
SIEM
SIEM Tactics, Techiques, and Procedures
elastdocker
🐳 Elastic Stack (ELK) v8+ on Docker with Compose. Pre-configured out of the box to enable Logging, Metrics, APM, Alerting, ML, and SIEM features. Up with a Single Command.
ATTACKdatamap
A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework
sagan
** README ** This repo has MOVED to https://github.com/quadrantsec/sagan