This repository is used as a mirror for the different detection content providers. This is used as the primary source for the detection search engine hosted on https://decon.optyx.io.
Vendor | Types | Uri |
---|---|---|
Splunk | Detections, Hunts | https://github.com/splunk/security_content |
Sigma | Detections, Hunts | https://github.com/SigmaHQ/sigma |
Elastic | Detections | https://github.com/elastic/detection-rules |
Sentinel | Detections, Hints | https://github.com/Azure/Azure-Sentinel |