Showing 4 of 4 projects
A generic and open signature format for describing log event detections, shareable across SIEM systems.
A public repository for developing, testing, and maintaining detection rules for Elastic Security's SIEM, with tools for Detections as Code.
A PowerShell module for threat hunting and detecting malicious activity via Windows Event Logs.
A collection of ready-to-use KQL queries for threat hunting, detection, and analytics in Microsoft Defender for Endpoint and Azure Sentinel.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.