Projects in Awesome Lists tagged with sigma-rules
A curated list of projects in awesome lists tagged with sigma-rules .
https://github.com/wagga40/Zircolite
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
auditd detection evtx evtxtract forensics forensics-tools pysigma python3 sigma sigma-rules sysmon
Last synced: 21 Nov 2024
https://github.com/attackiq/sigmaiq
A pySigma wrapper and langchain toolkit for automatic rule creation/translation
detection-engineering langchain llm python3 security security-tools sigma sigma-rules
Last synced: 05 Apr 2025
https://github.com/sysflow-telemetry/sf-processor
SysFlow edge processing pipeline
analytics falco falco-rules open-telemetry otel otel-agent plugins real-time rules rules-engine sigma sigma-rules
Last synced: 17 Jan 2025
https://github.com/marirs/sigma-convert
Convert Sigma Rules to different formats
rust-crate rust-lang sigma sigma-convert sigma-rules
Last synced: 23 Apr 2025
https://github.com/muchdogesec/sigma2stix
A command line tool that converts Sigma Rules into STIX 2.1 Objects.
Last synced: 02 May 2025
https://github.com/bradleyjkemp/sigmadoc
A static site generator for @SigmaHQ rules
Last synced: 10 Apr 2025
https://github.com/pop-ecx/sigma_picker.nvim
pick and convert to specific backends for sigma rules
cybersecurity lua neovim nvim nvim-plugin sigma-rules
Last synced: 14 Feb 2025
https://github.com/scrymastic/pyroclast
Python tool for analyzing Windows event logs using Sigma rules for threat detection
log-analysis python sigma-rules windows-security
Last synced: 09 Apr 2025
https://github.com/pop-ecx/sigma-ls
A minimal language server to help in writing sigma rules
detection-engineering language-server-protocol lsp neovim sigma-rules
Last synced: 02 Apr 2025
https://github.com/muchdogesec/cti_knowledge_base_store
A repository that stores CTI Knowledge-bases in versioned STIX 2.1 Bundles.
cpe cve disarm mitre-attack mitre-capec mitre-cwe nvd sigma-rules stix2 stix2-extensions yara yara-rules
Last synced: 01 Mar 2025
https://github.com/aitor-alvarez/osint-search
OSINT script to mine and retrieve Yara and Sigma rules from Github repositories using search API
github-api osint osint-python osint-tool sigma sigma-rules yara yara-rules
Last synced: 20 Mar 2025
https://github.com/aj-tap/musashi
Musashi is a Python-based rapid triage tool that applies SIGMA rules to endpoint logs (e.g., Defender, Cortex) for threat detection and IOC extraction. It automates log analysis, helping security analysts quickly identify suspicious activity without manual querying. 🚀
Last synced: 06 Apr 2025