A security log analysis tool for data lake with combination of SQL query and Rego policy
-
Updated
Dec 3, 2024 - Go
A security log analysis tool for data lake with combination of SQL query and Rego policy
Threat-hunting tool for Linux
This repository creates a docker image for NGINX Instance Manager to run it on Kubernetes, Openshift and docker-compose. Optional integration with Second Sight.
[In Progress] CyberDitto creates secure digital twins of your network infrastructure to automate security assessments, compliance checks, and attack simulations, enabling risk-free security testing and automated remediation.
ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting 100s of services and evaluations to harden your CSP & SaaS environments with controls mapped to over 20 industry, regulatory, and best practice controls frameworks
Server Monitoring Tool is designed to monitor file activities on a server, detecting unauthorized file modifications or suspicious uploads like webshells
Observe introduction: building a SIEM with Observe.
Some of my security-related coding projects for OpenBSD: A kernel-based user-profile intrusion detection system (FUPIDS) and an ICMP-based "port-knocking" service (openportd).
Extension of NetManager script to automate Wazuh integration and management
A Suricata based IDS/IPS/NSM distro
PythonSOCModules: Elevate your Security Operations Center (SOC) with Python's Paramiko, Requests, PyShark, Scapy, Matplotlib, and Seaborn modules. Strengthen security monitoring, incident detection, and response.
Cyber Defence Monitoring Course Suite :: Suricata, Arkime (and others in the past)
LDAP Watchdog: A real-time linux-compatible LDAP monitoring tool for detecting directory changes, providing visibility into additions, modifications, and deletions for administrators and security researchers.
A security monitoring solution for Kubernetes
Security Advisories Repository
Splunk project demonstration
Serverless Log Search Architecture for Security Monitoring based on Amazon Athena
IFIM is an illumos fork of Achiefs File Integrity Monitoring tool that performs file system analysis, file integrity checking on illumos-based distributions.
Add a description, image, and links to the security-monitoring topic page so that developers can more easily learn about it.
To associate your repository with the security-monitoring topic, visit your repo's landing page and select "manage topics."