A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
-
Updated
May 30, 2026 - Python
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
pySigma backend for Sumo Logic Cloud SIEM rule conversion
Detection-as-code pipeline with measured precision/recall against OTRF captures. 20 Sigma rules, multi-SIEM (SPL/EQL/KQL), ATT&CK coverage, two logsource baselines. By Aadarsh Kadam.
pySigma backend that converts Sigma detection rules to LogsQL queries for VictoriaLogs
Add a description, image, and links to the pysigma topic page so that developers can more easily learn about it.
To associate your repository with the pysigma topic, visit your repo's landing page and select "manage topics."