mirror of
https://github.com/valitydev/SigmaHQ.git
synced 2024-11-08 18:23:52 +00:00
.. | ||
config | ||
sigma | ||
tests | ||
merge_sigma | ||
README.md | ||
requirements-devel.txt | ||
requirements-misp.txt | ||
requirements.txt | ||
setup.cfg | ||
setup.py | ||
sigma2genericsigma | ||
sigma2misp | ||
sigma-similarity | ||
sigmac |
This package contains libraries for processing of Sigma rules and the following command line tools:
- sigmac: converter between Sigma rules and SIEM queries:
- Elasticsearch query strings
- Kibana JSON with searches
- Splunk SPL queries
- Elasticsearch X-Pack Watcher
- Logpoint queries
- merge_sigma: Merge Sigma collections into simple Sigma rules.
- sigma2misp: Import Sigma rules to MISP events.