Files
blue-team-tools/tools
Maxime Lamothe-Brassard 8d866b0868 Adding comments.
2019-10-26 17:37:13 -05:00
..
2019-10-26 17:37:13 -05:00
2019-08-01 23:45:07 +02:00
2018-07-27 00:02:07 +02:00
2019-05-30 22:56:38 +02:00
2018-10-22 22:43:59 +02:00
2018-10-22 22:43:59 +02:00
2019-10-21 11:58:26 +02:00
2019-03-02 00:14:20 +01:00
2018-10-22 23:02:05 +02:00
2019-10-25 21:59:03 +02:00
2019-10-07 22:30:57 +02:00

This package contains libraries for processing of Sigma rules and the following command line tools:

  • sigmac: converter between Sigma rules and SIEM queries:
    • Elasticsearch query strings
    • Kibana JSON with searches
    • Splunk SPL queries
    • Elasticsearch X-Pack Watcher
    • Logpoint queries
  • merge_sigma: Merge Sigma collections into simple Sigma rules.
  • sigma2misp: Import Sigma rules to MISP events.