mirror of
https://github.com/valitydev/SigmaHQ.git
synced 2024-11-06 17:35:19 +00:00
8d9b706d6a
Override Features |
||
---|---|---|
.. | ||
config | ||
sigma | ||
tests | ||
merge_sigma | ||
README.md | ||
requirements-devel.txt | ||
requirements.txt | ||
setup.cfg | ||
setup.py | ||
sigma2attack | ||
sigma2genericsigma | ||
sigma2misp | ||
sigma-similarity | ||
sigma-uuid | ||
sigmac |
This package contains libraries for processing of Sigma rules and the following command line tools:
- sigmac: converter between Sigma rules and SIEM queries:
- Elasticsearch query strings
- Kibana JSON with searches
- Splunk SPL queries
- Elasticsearch X-Pack Watcher
- Logpoint queries
- merge_sigma: Merge Sigma collections into simple Sigma rules.
- sigma2misp: Import Sigma rules to MISP events.