7141729ffc
* Any definition: 1 of them * All definitions: all of them * Any of selected definitions: 1 of def* (wildcard) * All of selected definitions: all of def* (wildcard)
This package contains libraries for processing of Sigma rules and the following command line tools:
- sigmac: converter between Sigma rules and SIEM queries:
- Elasticsearch query strings
- Kibana JSON with searches
- Splunk SPL queries
- Elasticsearch X-Pack Watcher
- Logpoint queries
- merge_sigma: Merge Sigma collections into simple Sigma rules.