Skip to content

Commit

Permalink
It works on my system
Browse files Browse the repository at this point in the history
Initial upload
  • Loading branch information
berthayes committed Aug 28, 2021
0 parents commit 6650d78
Show file tree
Hide file tree
Showing 51 changed files with 33,790 additions and 0 deletions.
2 changes: 2 additions & 0 deletions .gitignore
Original file line number Diff line number Diff line change
@@ -0,0 +1,2 @@

.DS_Store
11 changes: 11 additions & 0 deletions config/sigma-dns.properties
Original file line number Diff line number Diff line change
@@ -0,0 +1,11 @@
application.id=zeek-rules-streams-app
bootstrap.server=broker:29092
schema.registry=http://schema-registry:8081
data.topic=dns
output.topic=dns-detection
field.mapping.file=/tmp/config/splunk-zeek.yml
sigma.rules.topic=sigma-rules
sigma.rule.filter.product=zeek
sigma.rule.filter.service=dns
#sigma.rule.filter.title=Domain User Enumeration Network Recon 01
#sigma.rule.filter.list=/Users/mpeacock/Development/KafkaSigma/kafka-sigma-streams/src/config/sigma_titles.txt
10 changes: 10 additions & 0 deletions config/sigma-http.properties
Original file line number Diff line number Diff line change
@@ -0,0 +1,10 @@
application.id=operation-rules-streams-app
bootstrap.server=127.0.0.1:9092
data.topic=http
output.topic=http-detection
field.mapping.file=config/splunk-zeek.yml
sigma.rules.topic=sigma-rules
sigma.rule.filter.product=zeek
sigma.rule.filter.service=http
sigma.rule.filter.title=Simple Http
#sigma.rule.filter.list=config/sigma_titles.txt
4 changes: 4 additions & 0 deletions config/sigma_titles.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,4 @@
Possible Windows Executable Download Without Matching Mime Type
Executable from Webdav
Possible Data Collection related to Office Docs and Email Archives and PDFs
Domain User Enumeration Network Recon 01
Loading

0 comments on commit 6650d78

Please sign in to comment.