Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. Tags
  3. Siem

Siem

16 projects

Showing 16 of 16 projects

wazuh
wazuhC++

An open-source unified XDR and SIEM platform for threat prevention, detection, and response across endpoints and cloud workloads.

#container-security#siem#malware-detection
Stars15.8k
Forks2.3k
Last commit1 day ago
Sigma Rules
Sigma RulesPython

A generic and open signature format for describing log event detections, shareable across SIEM systems.

#signatures#yaml#siem
Stars10.5k
Forks2.6k
Last commit8 days ago
Sigma
SigmaPython

A generic and open signature format for describing log event detections, shareable across SIEM systems.

#signatures#yaml#siem
Stars10.5k
Forks2.6k
Last commit8 days ago
Elastalert | Yelp
Elastalert | YelpPython

A simple framework for alerting on anomalies, spikes, or other patterns in Elasticsearch data.

#devops#siem#observability
Stars8.0k
Forks1.7k
Last commit1 year ago
OSSEC
OSSECC

Open Source Host-based Intrusion Detection System performing log analysis, file integrity checking, rootkit detection, and active response.

#real-time-alerting#siem#policy-monitoring
Stars5.0k
Forks1.1k
Last commit12 days ago
Hunting ELK (HELK)
Hunting ELK (HELK)Jupyter Notebook

An open-source threat hunting platform with advanced analytics capabilities built on ELK stack, Apache Spark, and Jupyter notebooks.

#apache-spark#elk-stack#security-analytics
Stars3.9k
Forks690
Last commit2 years ago
Security Onion
Security Onion

A Linux distribution for threat hunting, enterprise security monitoring, and log management.

#enterprise-security#siem#ids
Stars3.1k
Forks524
Last commit5 years ago
Elastic Detection Rules
Elastic Detection RulesPython

A public repository for developing, testing, and maintaining detection rules for Elastic Security's SIEM, with tools for Detections as Code.

#siem#security-automation#security
Stars2.6k
Forks664
Last commit3 days ago
MozDef
MozDefPython

An open-source security incident response platform that automates and coordinates enterprise defense workflows.

#elk-stack#siem#enterprise-defense
Stars2.2k
Forks324
Last commit4 years ago
Detection Engineering
Detection Engineering

A curated list of resources, tools, and frameworks for detection engineering in cybersecurity.

#mitre#security-analytics#siem
Stars1.2k
Forks119
Last commit5 days ago
List of various Security APIs
List of various Security APIs

A curated collection of public JSON APIs for cybersecurity professionals, covering threat intelligence, malware analysis, and security tools.

#json-api#siem#security-automation
Stars981
Forks155
Last commit1 month ago
VAST
VASTC++

A data pipeline engine for security teams to collect, transform, enrich, and route telemetry data at scale.

#stream-processing#security-analytics#siem
Stars742
Forks104
Last commit1 day ago
Chronicle (GCP) Detection Rules
Chronicle (GCP) Detection RulesPython

A collection of example YARA-L detection rules and dashboards for Google Security Operations (SecOps).

#siem#detection-as-code#yara-l
Stars498
Forks130
Last commit13 days ago
Panther Labs Detection Rules
Panther Labs Detection RulesPython

A collection of built-in detection rules and policies for Panther, a modern SIEM, enabling security monitoring as code.

#yaml#siem#detection-as-code
Stars452
Forks203
Last commit4 days ago
Splunk ES Correlation Searches Best Practices | OpsTune
Splunk ES Correlation Searches Best Practices | OpsTune

A collection of Splunk SPL queries and prototypes for threat hunting and detection engineering.

#security-analytics#siem#rules
Stars293
Forks46
Last commit2 years ago
LogESP
LogESPPython

An open-source SIEM system built with Python Django for log management, risk assessment, and asset tracking.

#siem#vulnerability-management#nist-compliance
Stars219
Forks69
Last commit2 years ago

Related Tags

#Security10#Log Analysis8#Security Operations7#Threat Hunting7#Elasticsearch6#Cybersecurity5#Threat Detection5#Incident Response5#Compliance4#Splunk4#Security Analytics4#Security Monitoring4
Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub