Topic: "sigma"
WithSecureLabs/chainsaw
Rapidly Search and Hunt through Windows Forensic Artefacts
Language: Rust - Size: 15.7 MB - Last synced at: 10 days ago - Pushed at: about 1 month ago - Stars: 3,153 - Forks: 279

Yamato-Security/hayabusa
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Language: Rust - Size: 143 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 2,623 - Forks: 224

Yamato-Security/WELA-deprecated
WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)
Language: PowerShell - Size: 4.16 MB - Last synced at: 2 months ago - Pushed at: over 2 years ago - Stars: 780 - Forks: 83

firoorg/firo
The privacy-focused cryptocurrency
Language: C++ - Size: 208 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 747 - Forks: 362

wagga40/Zircolite
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
Language: Python - Size: 61 MB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 705 - Forks: 96

tenzir/tenzir
Tenzir is the data pipeline engine for security teams.
Language: C++ - Size: 2.16 GB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 676 - Forks: 97

Yamato-Security/EnableWindowsLogSettings
Documentation and scripts to properly enable Windows event logs.
Language: Batchfile - Size: 1.14 MB - Last synced at: 7 months ago - Pushed at: over 1 year ago - Stars: 556 - Forks: 51

sdiehl/bulletproofs
Bulletproofs are short non-interactive zero-knowledge proofs that require no trusted setup
Language: Haskell - Size: 177 KB - Last synced at: 7 days ago - Pushed at: over 2 years ago - Stars: 540 - Forks: 49

V1D1AN/S1EM
This project is a SIEM with SIRP and Threat Intel, all in one.
Language: Shell - Size: 10.7 MB - Last synced at: about 1 month ago - Pushed at: 6 months ago - Stars: 434 - Forks: 84

mdecrevoisier/SIGMA-detection-rules
Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques
Size: 573 KB - Last synced at: about 2 months ago - Pushed at: 5 months ago - Stars: 356 - Forks: 73

yaph/programming-languages-influence
Code to retrieve data for the programming languages influence visualizations from Freebase
Language: Python - Size: 148 KB - Last synced at: 23 days ago - Pushed at: over 3 years ago - Stars: 187 - Forks: 59

socprime/SigmaUI
SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)
Language: Python - Size: 42 MB - Last synced at: about 1 month ago - Pushed at: about 4 years ago - Stars: 187 - Forks: 32

Yamato-Security/hayabusa-rules
Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.
Language: Python - Size: 24.3 MB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 179 - Forks: 25

nasbench/SIGMA-Resources
Resources To Learn And Understand SIGMA Rules
Size: 13.7 KB - Last synced at: 26 days ago - Pushed at: over 2 years ago - Stars: 174 - Forks: 13

3CORESec/SIEGMA
SIEGMA - Transform Sigma rules into SIEM consumables
Language: Python - Size: 1.01 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 149 - Forks: 23

Yamato-Security/suzaku
Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.
Language: Rust - Size: 7.86 MB - Last synced at: about 1 hour ago - Pushed at: about 5 hours ago - Stars: 122 - Forks: 7

ThinkingTransistor/Sigma 📦
Rocket powered machine learning. Create, compare, adapt, improve - artificial intelligence at the speed of thought.
Language: C# - Size: 122 MB - Last synced at: about 1 month ago - Pushed at: over 3 years ago - Stars: 119 - Forks: 13

UncoderIO/Uncoder_IO
An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.
Language: Python - Size: 2.3 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 101 - Forks: 16

SecurityRiskAdvisors/TALR
Threat Alert Logic Repository
Language: Shell - Size: 2.36 MB - Last synced at: about 1 month ago - Pushed at: over 6 years ago - Stars: 92 - Forks: 18

bradleyjkemp/sigma-go
A Go implementation and parser for Sigma rules.
Language: Go - Size: 357 KB - Last synced at: 16 days ago - Pushed at: 16 days ago - Stars: 89 - Forks: 18

annh9b/JPEGView-Static
JPEGView-Static - fast and tiny viewer/editor for PC/Web Images (JPEG, BMP, PNG, WEBP, GIF, TIFF) and Camera Raw Formats (DNG, Canon, Nikon, Sony, Fuji, Sigma) in exactly one statically linked executable..
Language: C++ - Size: 24 MB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 83 - Forks: 11

AttackIQ/SigmAIQ
A pySigma wrapper and langchain toolkit for automatic rule creation/translation
Language: Python - Size: 1.49 MB - Last synced at: 7 days ago - Pushed at: 12 days ago - Stars: 81 - Forks: 12

northsh/detection.studio
Convert Sigma rules to SIEM queries, directly in your browser.
Language: Vue - Size: 5.32 MB - Last synced at: 10 days ago - Pushed at: 10 days ago - Stars: 80 - Forks: 2

0xThiebaut/sigmai
Import specific data sources into the Sigma generic and open signature format.
Language: Go - Size: 48.8 KB - Last synced at: 4 days ago - Pushed at: about 3 years ago - Stars: 78 - Forks: 5

3CORESec/S2AN
S2AN - Mapper of Sigma/Suricata Rules/Signatures ➡️ MITRE ATT&CK Navigator
Language: C# - Size: 64.2 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 77 - Forks: 12

sdiehl/schnorr-nizk
Schnorr Protocol for Non-interactive Zero-Knowledge Proofs
Language: Haskell - Size: 172 KB - Last synced at: about 2 months ago - Pushed at: over 5 years ago - Stars: 75 - Forks: 15

rohaquinlop/automathon
A Python library for simulating and visualizing finite automata
Language: Python - Size: 490 KB - Last synced at: 6 days ago - Pushed at: 7 days ago - Stars: 67 - Forks: 4

alx/parasol
A network graph exploration tool
Language: JavaScript - Size: 41.8 MB - Last synced at: 5 days ago - Pushed at: over 2 years ago - Stars: 63 - Forks: 4

lvpp/sigma
LVPP sigma-profile database + COSMO-SAC parametrizations
Language: Python - Size: 6.46 MB - Last synced at: 13 days ago - Pushed at: 13 days ago - Stars: 62 - Forks: 28

sametsazak/sysmon
Sysmon and wazuh integration with Sigma sysmon rules [updated]
Size: 28.3 KB - Last synced at: over 1 year ago - Pushed at: almost 4 years ago - Stars: 55 - Forks: 16

calebstewart/python-sigma
Python API for interacting with sigma rules.
Language: Python - Size: 714 KB - Last synced at: about 2 months ago - Pushed at: almost 3 years ago - Stars: 51 - Forks: 5

lprat/static_file_analysis
Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules
Language: YARA - Size: 9.26 MB - Last synced at: 26 days ago - Pushed at: over 1 year ago - Stars: 50 - Forks: 11

Loginsoft-LLC/threat-detection-rules
Threat Detection & Anomaly Detection rules for popular open-source components
Size: 104 KB - Last synced at: 5 months ago - Pushed at: almost 3 years ago - Stars: 50 - Forks: 11

3CORESec/Automata
Automatic detection engineering technical state compliance
Language: Python - Size: 3.24 MB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 48 - Forks: 11

grafana/pySigma-backend-loki
pySigma backend for generating Grafana Loki/LogQL rules
Language: Python - Size: 846 KB - Last synced at: 6 days ago - Pushed at: about 1 month ago - Stars: 45 - Forks: 2

M3NIX/sigmaio 📦
simple webapp for converting sigma rules into siem queries using the pySigma library
Language: HTML - Size: 53.7 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 43 - Forks: 3

iankloo/sigmaNet
Render igraphs from R using Sigma.js
Language: R - Size: 1.41 MB - Last synced at: 23 days ago - Pushed at: almost 7 years ago - Stars: 41 - Forks: 8

certeu/droid
A pySigma wrapper to manage detection rules.
Language: Python - Size: 256 KB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 39 - Forks: 4

koifinance/NixCore
Nix Core Staging Repo
Language: C - Size: 101 MB - Last synced at: about 2 months ago - Pushed at: almost 3 years ago - Stars: 39 - Forks: 20

groupoid/groupoid.space
🧊 Інститут формальної математики
Language: TeX - Size: 126 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 34 - Forks: 13

DearBytes/Opensource-Endpoint-Monitoring
This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.
Language: Python - Size: 1.18 MB - Last synced at: over 1 year ago - Pushed at: almost 6 years ago - Stars: 32 - Forks: 7

XatzClient/official-skid-list Fork of verblefanboy/official-skid-list
I was pretty dumb and forked a joke project, enjoy the skid list for minecraft speds ig
Size: 46.9 KB - Last synced at: over 1 year ago - Pushed at: almost 2 years ago - Stars: 31 - Forks: 12

sigmaco/rwsdk-v37-pc
RenderWare "Graphics" 3 (3.7.0.2), Windows-PC — Evaluation Edition
Language: C - Size: 79.8 MB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 26 - Forks: 5

SigmaHQ/cookiecutter-pySigma-backend
pySigma Cookiecutter backend template
Language: Python - Size: 54.7 KB - Last synced at: 3 days ago - Pushed at: 3 months ago - Stars: 25 - Forks: 8

lu-ci/apex-sigma-core
This is a mirror repository, main repository at https://gitlab.com/lu-ci/sigma/apex-sigma
Language: Python - Size: 28.6 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 24 - Forks: 23

binalyze/tigma
Sigma Engine implementation in TypeScript
Language: JavaScript - Size: 13 MB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 24 - Forks: 2

bmstefanski/sigma-male-grindset-api
Language: JavaScript - Size: 71.3 KB - Last synced at: 8 days ago - Pushed at: almost 4 years ago - Stars: 23 - Forks: 1

circulosmeos/circle
statistics ASCII circle for analysing byte entropy in files
Language: C - Size: 169 KB - Last synced at: 4 months ago - Pushed at: almost 4 years ago - Stars: 23 - Forks: 4

poyentung/sigma
Python code for phase identification and spectrum analysis of energy dispersive x-ray spectroscopy (EDS)
Language: Jupyter Notebook - Size: 973 MB - Last synced at: 16 days ago - Pushed at: over 1 year ago - Stars: 20 - Forks: 4

noirofficial/noir
The official Noir repository. Noir is a cryptocurrency built by its community, driven by the Sigma protocol for privacy.
Language: C++ - Size: 107 MB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 20 - Forks: 9

WithSecureLabs/lazarus-sigma-rules
Size: 7.81 KB - Last synced at: about 1 year ago - Pushed at: over 4 years ago - Stars: 19 - Forks: 3

bigtreetech/OctoBTT_V2_GUI_Sigma
OctoBTT new version of the GUI test source code, include the deployer
Language: C++ - Size: 5.65 MB - Last synced at: 2 days ago - Pushed at: over 3 years ago - Stars: 18 - Forks: 7

mtnmunuklu/alterix
Converts Sigma, Yara rules and IOCs
Language: Go - Size: 4.56 MB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 16 - Forks: 3

sysflow-telemetry/sf-processor
SysFlow edge processing pipeline
Language: Go - Size: 59.2 MB - Last synced at: about 2 months ago - Pushed at: 5 months ago - Stars: 16 - Forks: 13

j91321/conti-manuals-analysis
Analysis of techniques used by Conti ransomware affiliates from their leaked manuals.
Size: 104 KB - Last synced at: over 2 years ago - Pushed at: almost 4 years ago - Stars: 16 - Forks: 2

sigma-andex/idris-refined 📦
Port of Scala/Haskell Refined library to Idris
Language: Idris - Size: 23.4 KB - Last synced at: about 1 year ago - Pushed at: about 4 years ago - Stars: 15 - Forks: 2

Lyc4on/EvtXHunt
EvtXHunt is an Autopsy plugin that is able to analyze Windows EVTX logs against a library of SIGMA rules.
Language: Python - Size: 191 MB - Last synced at: almost 2 years ago - Pushed at: over 3 years ago - Stars: 14 - Forks: 1

nikitaeverywhere/edu-text-analysis-experiments
Statistical text analysis and semantic networks with Python
Language: Python - Size: 30.3 MB - Last synced at: 25 days ago - Pushed at: over 7 years ago - Stars: 14 - Forks: 4

sigmaco/havok-2013
Havok Physics & Animation 2013
Language: C++ - Size: 2.98 MB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 13 - Forks: 10

Karneades/SigmaFilterCheck
Check Sigma rules for easy-to-bypass whitelists to make them more robust (https://github.com/Neo23x0/sigma)
Language: Python - Size: 24.4 KB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 13 - Forks: 1

kanugurajesh/Siem-Converter
A reactJS web app that can take a ruleset and translate it into any SIEM search query, using Sigma
Language: TypeScript - Size: 104 KB - Last synced at: about 2 months ago - Pushed at: over 1 year ago - Stars: 12 - Forks: 0

marirs/sigma-convert
Convert Sigma Rules to different formats
Language: Rust - Size: 35.7 MB - Last synced at: about 1 month ago - Pushed at: 10 months ago - Stars: 11 - Forks: 3

kcg2015/Unscented_Kalman_Filter
Unscented Kalman filtering in Python and C++ for tracking and localization applications
Language: Jupyter Notebook - Size: 5.87 MB - Last synced at: about 2 years ago - Pushed at: over 5 years ago - Stars: 11 - Forks: 7

MeoMunDep/Sigma
Auto do tasks, claim wallet rewards, join my community, checkin.
Language: Shell - Size: 811 KB - Last synced at: about 1 month ago - Pushed at: 3 months ago - Stars: 10 - Forks: 0

CybercentreCanada/pysigma
Sigma signatures matcher written in Python
Language: Python - Size: 12 MB - Last synced at: about 1 month ago - Pushed at: 5 months ago - Stars: 8 - Forks: 3

berthayes/cp-siem
A dockerized demo for illustrating how Confluent can be used in a SIEM Modernization use case.
Language: Shell - Size: 236 MB - Last synced at: almost 2 years ago - Pushed at: over 3 years ago - Stars: 8 - Forks: 11

sigmaco/rwsdk-v35-ps2
RenderWare "Graphics" 3 (3.5), PlayStation 2 — Evaluation Edition
Language: C - Size: 77.6 MB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 8 - Forks: 1

osnolanarf/ttp
This site collects expert rules and behavioral rules (BIOC) based on Sigma/EQL TTPs.
Size: 80.1 KB - Last synced at: 7 months ago - Pushed at: about 5 years ago - Stars: 8 - Forks: 3

lu-ci/sigma/apex-sigma
[Apex Sigma](https://luciascipher.com/sigma): The Database Giant Discord Bot
Last synced at: about 2 years ago - Stars: 8 - Forks: 15

starkris51/roblox-lapskaus
Roblox first person arena shooter based on Cube 2's insta gamemodes
Language: Luau - Size: 201 KB - Last synced at: 14 days ago - Pushed at: about 1 month ago - Stars: 7 - Forks: 1

turbina4/Arduino-RFID-cloner
Arduino RFID cloner
Language: C++ - Size: 11.4 MB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 6 - Forks: 0

3nn10/CloudDog
CloudDog is a centralized EDR and WAF, it is able to identify and prevent web application attacks, ssh bruteforce and Suspicious shell commands.
Language: Python - Size: 107 KB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 6 - Forks: 2

wikijm/ConvertSigmaRepo2SentinelOnePQ
Scripts played by GitHub Actions that converts Sigma rules to SentinelOne PowerQuery via PySigma.
Language: Python - Size: 29.9 MB - Last synced at: about 8 hours ago - Pushed at: about 18 hours ago - Stars: 5 - Forks: 2

Infinit3i/Defensive-Rules
sigma, spl rules
Size: 454 KB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 5 - Forks: 1

metanet4j/metanet4j-sdk
BAP、BitcoinSchema、1sat ordinals、sigma protocol support for java. All base on bitcoinsv
Language: Java - Size: 1.77 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 5 - Forks: 0

SyeedHasan/detection-rules
A series of rulesets I've written to practice writing effective rules!
Language: YARA - Size: 10.7 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 5 - Forks: 0

lu-ci/apex-sigma 📦
THIS PROJECT IS DEPRECATED! Check out https://github.com/aurora-pro/apex-sigma-core for the current version of Sigma.
Language: Python - Size: 48 MB - Last synced at: about 1 year ago - Pushed at: almost 8 years ago - Stars: 5 - Forks: 17

chalkydri/chalkydri
A blazingly fast FRC vision system built from the ground up in Rust
Language: Rust - Size: 2.76 MB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 4 - Forks: 3

kidrek/secubian
SECUBIAN is a French Linux distribution focused on evidence processing during Incident Response.
Language: Python - Size: 48.2 MB - Last synced at: 24 days ago - Pushed at: 24 days ago - Stars: 4 - Forks: 3

marcelkwaschny/pySigma-backend-netwitness
pySigma NetWitness backend
Language: Python - Size: 145 KB - Last synced at: 2 days ago - Pushed at: 2 months ago - Stars: 4 - Forks: 0

BitcoinSchema/sigma
A digital signature scheme for signing Bitcoin transaction data
Language: TypeScript - Size: 2.03 MB - Last synced at: about 2 months ago - Pushed at: 9 months ago - Stars: 4 - Forks: 3

savannabits/sigma-vite
Vitejs and Vue 3 TS version of primefaces/sigma-vue theme for PrimeVue
Language: CSS - Size: 4.84 MB - Last synced at: about 1 month ago - Pushed at: over 3 years ago - Stars: 4 - Forks: 2

SamuraiMDR/sigma-rules
Sigma detection rules created by analysts at NTT Security
Size: 83 KB - Last synced at: 12 days ago - Pushed at: 12 days ago - Stars: 3 - Forks: 2

BM-AI-solutions/decision-points
The West isnt gonna save itself..
Language: Python - Size: 34.7 MB - Last synced at: 22 days ago - Pushed at: 22 days ago - Stars: 3 - Forks: 1

bradleyjkemp/sigmadoc
A static site generator for @SigmaHQ rules
Language: JavaScript - Size: 31 MB - Last synced at: about 2 months ago - Pushed at: about 2 years ago - Stars: 3 - Forks: 3

circulosmeos/bytescircle
linux' bytes-circle port to R: statistics ASCII circle for analysing byte entropy in files
Language: R - Size: 388 KB - Last synced at: 4 months ago - Pushed at: over 3 years ago - Stars: 3 - Forks: 0

sigmaco/pathengine
PathEngine SDK Base
Language: C++ - Size: 5.22 MB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 3 - Forks: 3

sigmaco/gamebryo-v32
Gamebryo LightSpeed 3 (3.2.0.661) SDK, Windows-PC
Language: C++ - Size: 448 MB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 3 - Forks: 6

gfoidl/Stochastics
Stochastic tools, distrubution, analysis
Language: C# - Size: 5.68 MB - Last synced at: 16 days ago - Pushed at: over 4 years ago - Stars: 3 - Forks: 0

m0jtaba/sigma-to-stix
Converting Sigma into STIX
Language: Python - Size: 83 KB - Last synced at: over 2 years ago - Pushed at: almost 7 years ago - Stars: 3 - Forks: 1

BitcoinSchema/go-sigma
A digital signature scheme for signing Bitcoin transaction data
Language: Go - Size: 59.6 KB - Last synced at: about 2 months ago - Pushed at: 2 months ago - Stars: 2 - Forks: 0

unknownxym/Cursor-ai-trial-reset
Resets your cursor ai free trial so you can keep using premium features
Language: Python - Size: 2.93 KB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 2 - Forks: 0

ninoseki/azuma
Yet another Sigma library for Python
Language: Python - Size: 647 KB - Last synced at: 12 days ago - Pushed at: 4 months ago - Stars: 2 - Forks: 2

duck2469/duck2469.github.io
My Website
Language: HTML - Size: 7.32 MB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 2 - Forks: 0

SprintingSnail69/chat-room
A free, cool chat room. Chat with friends from anywhere, anytime.
Language: JavaScript - Size: 1.15 MB - Last synced at: about 1 month ago - Pushed at: 6 months ago - Stars: 2 - Forks: 1

SigmaSociety/website
Official Website for SigmaSociety.
Language: HTML - Size: 31 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 0

mtnmunuklu/logen
Generates synthetic logs for Sigma rules
Language: Go - Size: 66.4 KB - Last synced at: 11 months ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 0

kai-ten/go-csf-schemas
Implementation of OCSF Schemas in Golang
Language: Go - Size: 35.2 KB - Last synced at: over 1 year ago - Pushed at: almost 2 years ago - Stars: 2 - Forks: 0

Ben4FH/Adaz-Sentinel Fork of christophetd/Adaz
Microsoft Sentinel fork of Adaz :wrench: Deploy customizable Active Directory labs in Azure - automatically.
Language: HCL - Size: 4.16 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 2 - Forks: 0

3CORESec/dtio-kb
Technical resources and knowledge base for dtection.io
Language: Shell - Size: 22.8 MB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 2 - Forks: 0
