StreamAlert Logo

StreamAlert

0
Free
Updated 11 March 2025
Visit Website

StreamAlert is a serverless, real-time data analysis framework empowering users to ingest, analyze, and alert on data from any environment. It is used by computer security teams to scan terabytes of log data daily for incident detection and response. Rules are written in Python, logs and alerts can be retroactively searched, and deployment is automated and secure by design. It supports dozens of log types, has a collection of community rules, and is fully open source and customizable.

FEATURES

SIMILAR TOOLS

Python application to translate Zeek logs into ElasticSearch's bulk load JSON format with detailed instructions and features.

Free

Standalone SIGMA-based detection tool for EVTX, Auditd, Sysmon for Linux, XML or JSONL/NDJSON Logs.

Free

A tool for advanced HTTPD logfile security analysis and forensics, implementing various techniques to detect attacks against web applications.

Free

AlienVault OSSIM provides an all-in-one security management solution with asset discovery, vulnerability assessment, and SIEM capabilities.

Free

Windows Event Log Analyzer with logon timeline generator and noise reduction for fast forensics.

Free

A logging proxy tool created in response to the 'MongoDB Apocalypse', with Docker support.

Free

Investigate malicious logons by visualizing and analyzing Windows Active Directory event logs with LogonTracer.

Free

Sysmon for Linux is a tool that monitors and logs system activity with advanced filtering to identify malicious activity.

Free

Procmon for Linux is a reimagining of the classic Procmon tool from Windows, allowing Linux developers to trace syscall activity efficiently.

Free
CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

Copyright © 2025 - All rights reserved