Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs.
SIEM Detection Format. The shareable detection format for security professionals.
Sigma is a generic, open, and structured detection format that allows security teams to detect relevant log events in a simple and shareable way.
Detection engineers, threat hunters and all defensive security practitioners collaborate on detection rules. The repository offers more than 3000 detection rules of different type and aims to make reliable detections accessible to all at no cost.