Main Sigma Rule Repository
-
Updated
Jan 5, 2026 - Python
Main Sigma Rule Repository
Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.
Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
DEPRECATED - MozDef: Mozilla Enterprise Defense Platform
A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4
A robust, and flexible open source User & Entity Behavior Analytics (UEBA) framework used for Security Analytics. Developed with luv by Data Scientists & Security Analysts from the Cyber Security Industry. [PRE-ALPHA]
Agentic SOC Platform: A powerful, flexible, open-source, and agent-centric automated security operations platform
Built-in Panther detection rules and policies
Open Source SIEM (Security Information and Event Management system).
Open-source framework to detect outliers in Elasticsearch events
An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.
SIEGMA - Transform Sigma rules into SIEM consumables
ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.
Fully automated host & network intrusion detection platform. Detects malware from behavioural patterns rather than signatures and enables deeper visibility than legacy tools.
RequestShield is a 100% Free and OpenSource tool designed to analyze HTTP access.logs and identify suspicious HTTP requests and potential security threats. It uses factors like geolocation, abuse history, request volume, and suspicious request paths to assign a risk score to each IP, providing actionable insights for security monitoring.
Kong API Manager with Prometheus And Graylog
Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.
Sigma detection rules for hunting with the threathunting-keywords project
Add a description, image, and links to the siem topic page so that developers can more easily learn about it.
To associate your repository with the siem topic, visit your repo's landing page and select "manage topics."