siem
Here are 26 public repositories matching this topic...
Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic Artifact Events for UEBA, Detect Exploitation events with wide CVE Coverage, and Risk Scoring of CVE, UEBA, Forensic, and MITRE ATT&CK Events.
-
Updated
Nov 5, 2023 - PowerShell
A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework
-
Updated
Nov 3, 2020 - PowerShell
Microsoft Sentinel SOC Operations
-
Updated
Jul 10, 2024 - PowerShell
Encyclopedia for Executables
-
Updated
Nov 9, 2021 - PowerShell
Tools to create a Native Windows Audit Collection Platform. Active Directory example provided
-
Updated
Nov 5, 2019 - PowerShell
Purpleteam scripts simulation & Detection - trigger events for SOC detections
-
Updated
Oct 19, 2024 - PowerShell
Ingest Nessus files into Elasticsearch using PowerShell!
-
Updated
Apr 26, 2024 - PowerShell
Vulnerability detection, OSquery, fully-fledged Wazuh ELK stack with Linux and Windows Wazuh + osquery enrollment via Ansible.
-
Updated
Jun 14, 2022 - PowerShell
Powershell script to query IBM Qradar SIEM and to generate KPI
-
Updated
May 12, 2023 - PowerShell
A walkthrough of creating and using the Azure environment and Microsoft Sentinel to track attacks and plot attacks on a live map.
-
Updated
Mar 26, 2023 - PowerShell
Build a fast, free, and effective Threat Hunting/Incident Response Log with Windows Event Forwarding
-
Updated
May 6, 2018 - PowerShell
Welcome to the Cloud Security Toolkit repository, your all-in-one destination for cutting-edge cloud security resources! Whether you're diving into offensive strategies, mastering threat hunting, or bolstering your blue-team defenses, this repo has you covered.
-
Updated
Oct 16, 2024 - PowerShell
-
Updated
Aug 21, 2024 - PowerShell
A PowerShell module interface for working with the Securonix Web API
-
Updated
Feb 13, 2023 - PowerShell
Ingest Nessus files into Elasticsearch using PowerShell!
-
Updated
Sep 16, 2024 - PowerShell
Improve this page
Add a description, image, and links to the siem topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the siem topic, visit your repo's landing page and select "manage topics."