seim
Here are 24 public repositories matching this topic...
Notif360 is an open-source system monitoring and notification tool designed to provide comprehensive oversight of critical system metrics, website health, and malware scanning
-
Updated
Aug 28, 2025 - Shell
This repository stores tables for use in SEIM tools (specifically Sumologic)
-
Updated
Oct 16, 2020
First attempt at a lambda architecture SEIM using Power BI & Azure Sentinel
-
Updated
Sep 8, 2023
Basic Intrusion Detection System using Scapy
-
Updated
Apr 4, 2026 - Python
Enterprise-style Wazuh SIEM homelab featuring Windows & Linux monitoring, Sysmon, Auditd, custom detections, threat hunting, incident response, and MITRE ATT&CK mapping.
-
Updated
Jun 11, 2026
My SOC Level 1 study notes from TryHackMe. Covers threat intelligence, SIEM investigations, digital forensics, endpoint monitoring, and phishing analysis, with practical labs using tools like Splunk, Wireshark, Sysmon, and Volatility.
-
Updated
May 30, 2026
Hands-on Wazuh SIEM deployment with Windows and Linux endpoints, File Integrity Monitoring (FIM), and Threat Hunting.
-
Updated
Jul 4, 2026
A self built log monitoring and alerting tool. Parses SSH auth logs with Bash and Python to detect brute force attacks and privilege escalation, renders the findings in a custom JavaScript dashboard, and ships with Splunk SPL queries for SIEM style correlation.
-
Updated
Jun 16, 2026 - HTML
CTI Lab 2 — Malicious File Analysis, ELK Stack, Purple Teaming (MITRE ATT&CK), and Elastic SIEM Alerting exercises. Tools: Sysmon, Atomic Red Team, Kibana, VirusTotal.
-
Updated
May 14, 2026
seim + idr without an api
-
Updated
Sep 29, 2025 - Python
Security Event and Incident Management: A security software that helps recognize and address potential security threats and vulnerabilities.
-
Updated
Aug 6, 2023 - PowerShell
Installed and configured Splunk Enterprise, created a SOC Lab index, and prepared a SIEM environment for future log ingestion and security investigations.
-
Updated
Jul 12, 2026
Enterprise-style offensive security range: segmented pfSense architecture, intentionally vulnerable AD forest, detection engineering. Ongoing build.
-
Updated
May 2, 2026
Splunk SIEM investigation lab with SPL detection rules, BOTS dataset analysis, and IR reports mapped to MITRE ATT&CK
-
Updated
Jun 14, 2026
Personal SOC lab built on Wazuh + Suricata to practice detection engineering, alert triage, and incident investigation.
-
Updated
Jul 18, 2026 - Shell
Improve this page
Add a description, image, and links to the seim topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the seim topic, visit your repo's landing page and select "manage topics."