KTS7

IDPS templates

Templates and dashboards for threat hunting with Suricata IDPS/NSM and the ELK 7 stack

Kibana 7 Templates for Suricata IDPS Threat Hunting

GitHub

40 stars
7 watching
11 forks
last commit: about 2 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
stamusnetworks/kts6 Templates for Kibana 6 to visualize and analyze Suricata threat intelligence data 24
stamusnetworks/kts Customizable dashboards and visualizations for security monitoring and analysis using Suricata IDPS and the ELK stack. 33
stamusnetworks/kts5 Customizable dashboards for Suricata IDPS and ELK stack 43
pevma/suricata-logstash-templates Templates for integrating Suricata IDPS with Logstash and Kibana dashboards 80
stamusnetworks/suricata-4-analysts A comprehensive guide to Suricata features and best practices for security analysts and threat hunters. 53
sbasu7241/aws-threat-simulation-and-detection This repository documents the simulation and detection of various AWS attack scenarios using Stratus Red Team and SumoLogic for logging and analysis. 284
travisbgreen/hunting-rules Provides Suricata IDS alert rules for detecting network anomalies 154
stamusnetworks/selks An integrated security monitoring platform using Suricata and Elasticsearch to analyze network traffic and alerts 1,492
sbousseaden/slides Collection of resources and concepts for threat hunting and detection engineering. 372
stamusnetworks/suricata-analytics Provides resources and tools for analyzing Suricata data 29
stamusnetworks/scirius A web-based interface for managing Suricata rulesets and threat hunting. 636
olafhartong/threathunting A Splunk application designed to guide threat hunts by mapping investigations to the MITRE ATT&CK framework 1,141
a3sal0n/cyberthreathunting A collection of tools and resources for threat hunters to identify and respond to cyber threats. 861
jehuty4949/nsl_kdd An NSL-KDD dataset project for network intrusion detection 172
viaduct-ai/kustomize-sops A kustomize plugin for securely managing encrypted Kubernetes resources 660