sigma-rules
Here are 25 public repositories matching this topic...
A pySigma wrapper and langchain toolkit for automatic rule creation/translation
-
Updated
May 20, 2025 - Python
Sigma detection rules for hunting with the threathunting-keywords project
-
Updated
Mar 2, 2025 - Python
[ARCHIVED -- USE TXT2DETECTION] A command line tool that converts Sigma Rules into STIX 2.1 Objects.
-
Updated
Jan 13, 2025 - Python
Scripts played by GitHub Actions that converts Sigma rules to SentinelOne PowerQuery via PySigma.
-
Updated
Sep 28, 2025 - Python
Script that organize Sigma rules by MITRE | ATT&CK tactics and techniques.
-
Updated
Nov 23, 2023 - Python
a new network detection format (sigma like but for network)
-
Updated
Jun 6, 2024 - Python
🌋 ETNA - Enhanced Threat Network Analysis | Sicilian-inspired automated threat hunting platform with MITRE ATT&CK integration
-
Updated
Jul 1, 2025 - Python
A Python command-line tool for quickly searching Sigma rules.
-
Updated
Feb 16, 2025 - Python
Manage your detection use cases portfolio
-
Updated
Mar 21, 2025 - Python
A minimal language server to help in writing sigma rules
-
Updated
Jun 5, 2025 - Python
A command-line tool that converts YAML files into human-readable, formatted Word documents using AI-powered analysis.
-
Updated
Apr 30, 2025 - Python
Menu-based scanner for Hayabusa intended for scanning mounted images and folders with EVTX files.
-
Updated
Aug 15, 2025 - Python
OSINT script to mine and retrieve Yara and Sigma rules from Github repositories using search API
-
Updated
Dec 8, 2023 - Python
A fast, batteries-included CLI companion for MITRE ATT&CK® TTPs.
-
Updated
May 25, 2025 - Python
A Python script to collect Sigma rules from various sources (GitHub repositories, single files, raw text URLs), deduplicate them, and store them in a structured SQLite database and as individual YAML files.
-
Updated
Jun 13, 2025 - Python
Web app that allows you to browse and explore the Sigma rules supported by uberAgent ESA's Threat Detection Engine.
-
Updated
Sep 26, 2025 - Python
An Autopsy data source ingest module for detection of IOCs in EVTX for Windows and Auditd for Linux based on SIGMA Rules.
-
Updated
Oct 4, 2024 - Python
uberAgent backend for the Sigma rule converter.
-
Updated
Sep 5, 2025 - Python
YARA and SIGMA parser API from an Artifacts. Build in Python just for an experiment study
-
Updated
Jul 30, 2025 - Python
Improve this page
Add a description, image, and links to the sigma-rules topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the sigma-rules topic, visit your repo's landing page and select "manage topics."