A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
-
Updated
Aug 24, 2026 - Python
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
simple webapp for converting sigma rules into siem queries using the pySigma library
A reactJS web app that can take a ruleset and translate it into any SIEM search query, using Sigma
pySigma backend for Sumo Logic Cloud SIEM rule conversion
Fixture-validated Sigma detections compiled for Elastic and CrowdStrike LogScale with evidence manifests, CI, and documented validation boundaries.
Detection Matchability Analyzer - finds the Sigma rules that can never match your real post-pipeline data, explains why, and generates the minimal event that would prove each one can fire.
Detection-as-code pipeline with measured precision/recall against OTRF captures. 20 Sigma rules, multi-SIEM (SPL/EQL/KQL), ATT&CK coverage, two logsource baselines. By Aadarsh Kadam.
Reglas Sigma de detección mapeadas a MITRE ATT&CK, validadas y convertibles a queries reales con pySigma
Offline detection-as-code lab for original Sigma rules, synthetic behavioral tests, ATT&CK mapping, coverage analysis, and pySigma query conversion.
Convert Sigma detections (pySigma) into Wazuh 4.x analysisd XML. Honest skips, persistent SIDs, no vendored SigmaHQ rules.
Detection engineering workbench for bounded Sigma conversion, provenance, comparison, and export.
pySigma backend that converts Sigma detection rules to LogsQL queries for VictoriaLogs
Detection engineering tool: load JSONL datasets, write Sigma rules, run them against OpenSearch, track findings and experiments.
pySigma backend that compiles Sigma detection rules into IBM QRadar AQL
To associate your repository with the pysigma topic, visit your repo's landing page and select "manage topics."