matanolabs / matano

Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
https://matano.dev
Apache License 2.0
1.44k stars 97 forks source link

Managed log source for Sysdig Secure events #115

Open timoguin opened 1 year ago

timoguin commented 1 year ago

Add support for events forwarded from Sysdig Secure. The policy events are what I'm currently most interested in. For my use case, that will primarily be rule matches for container syscalls.

Reference