securityonion

Security Monitor

An integrated security monitoring and threat hunting platform that collects, analyzes, and responds to network traffic data

Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, detections, and case management. It also includes other tools such as osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek.

GitHub

3k stars
88 watching
515 forks
Language: Shell
last commit: almost 2 years ago
case-managementcyber-securityendpoint-securityinformation-securityintrusion-detection-systemmonitoringnetwork-securitysecuritysecurity-toolsthreat-hunting

Related projects:

RepositoryDescriptionStars
security-onion-solutions/securityonion-docsA collection of Python-based documentation for security-related software solutions.86
s-rah/onionscanA tool designed to help users of hidden services identify operational security issues and track Dark Web sites2,900
misp/mispA platform for collecting, storing, and sharing structured information about cyber security incidents and threats.5,435
opennhp/opennhpA Zero Trust protocol that leverages resource-hiding and encryption to safeguard servers and data from attackers13,520
splunk/security_contentDelivers threat intelligence and detection capabilities to Splunk Enterprise Security1,319
bunkerity/bunkerwebA next-generation web application firewall that integrates with various environments to provide out-of-the-box security for web services.7,068
onionshare/onionshareAnonymously shares files, hosts websites, and chats using the Tor network6,346
thalesgroup-cert/watcherAutomated platform for discovering and analyzing cybersecurity threats targeting an organization869
find-sec-bugs/find-sec-bugsA plugin for static analysis of Java web applications and Android applications to identify potential security vulnerabilities.2,293
onionbrowser/onionbrowserA web browser that encrypts and tunnels internet traffic through the Tor network.2,321
cilium/tetragonA real-time security monitoring system that detects and responds to sensitive events using eBPF-based sensors and enriched with kernel and Kubernetes metadata3,694
stamusnetworks/selksAn integrated security monitoring platform using Suricata and Elasticsearch to analyze network traffic and alerts1,492
alexandreborges/malwoverviewA tool for analyzing malware and threat intelligence data from multiple sources3,012
west-wind/threat-hunting-with-splunkProvides Splunk queries to detect vulnerability exploitation attempts and subsequent compromise, including threat hunting for MITRE ATT&CK TTPs58
thehive-project/thehiveA scalable platform for investigating and managing security incidents, providing features for collaboration, task assignment, and case management.3,471