uSIEM's repositories
u-siem-core
Framework definitions that allow to build a custom SIEM.
usiem-opnsense
uSIEM Component to parse OPNSense firewall logs
usiem-sigma-engine
uSIEM Sigma Rule Engine
u-siem-sqlite-store
USiem component that stores events in a sqlite database
usiem-paloalto
uSIEM parser for PaloAlto Firewall
usiem-sonicwall
uSIEM parser for SonicWall Firewall
usiem-utils
Enrichers, Tasks and other utilities
documentation
Documentation about the project
parser-benchmarks
Simple benchmarks for log parsers. Performance in events per second with synthetic logs.
usiem-apache-httpd
uSIEM parser for Apache HTTP server
usiem-elasticsearch
Input and Ouput logging components for uSIEM
usiem-squid
uSIEM Squid web proxy parser
usiem-windns
Windows Server DNS parser for uSIEM
community-parsers
Repository for all parsed developed by the community.
enricher
A basic log enricher
experiments
Some experiments for uSIEM
siem-recipes
Ready to use SIEM recipes
usiem-basic-parser
Basic Parser component that supports multiple different sources and log formats
usiem-datasetmanager-sqlite
DatasetManager for uSIEM that uses a sqlite DB
usiem-kernel
A basic kernel to be used in uSIEM
usiem-mysql
MySQL parser for uSIEM
usiem-notioner
Send Alerts to Notion
usiem-pulsesecure
PulseSecure parser for uSIEM
usiem-syslog
uSIEM Syslog input and output