issues
search
outflanknl
/
RedELK
Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.
BSD 3-Clause "New" or "Revised" License
2.35k
stars
371
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Permission and Implant Log URL issue
#261
sunnyneo
closed
2 years ago
2
rsync performance tuning
#260
MarcOverIP
closed
2 years ago
0
Performance issue with rsync on C2server
#259
sunnyneo
closed
2 years ago
1
Add slack connector for notifications
#258
Matthijsy
closed
2 years ago
6
Help with install
#257
pentest01
closed
2 years ago
1
Help with install
#256
pentest01
closed
2 years ago
4
Update makethumbnail.py
#255
sunnyneo
closed
2 years ago
1
Apache/nginx traffic not being parsed
#254
carlneuhaus
closed
2 years ago
2
Update cobaltstrike logstash to parse DNS beacon
#251
sunnyneo
closed
2 years ago
0
Updated Kibana app to fix path for ATT&CK Navigator
#250
fastlorenzo
closed
2 years ago
0
import creds from .env file
#249
MarcOverIP
closed
2 years ago
0
229 stage1 download logstash issue
#248
MarcOverIP
closed
2 years ago
0
Apache logstash filter bug and typos
#247
MarcOverIP
closed
2 years ago
0
xforwardedfor with single IP address not parsed for Nginx
#246
sunnyneo
closed
2 years ago
1
Replace nat for cdn
#245
MarcOverIP
closed
2 years ago
2
rsync parameter update
#244
jmoosdijk
closed
2 years ago
0
rsync performance
#243
jmoosdijk
closed
2 years ago
0
Alarms should include source.cdn.ip instead of source.nat.ip
#242
MarcOverIP
closed
2 years ago
1
Added back Kibana app
#241
fastlorenzo
closed
2 years ago
0
Allow admin to set a projectname as prepend in mail-subjects
#240
xychix
closed
2 years ago
1
Hybrid Analysis should not alarm on a non 200 (json) response
#239
xychix
closed
2 years ago
0
Bluecheck update
#238
MarcOverIP
closed
2 years ago
0
Fix some Logstash warnings
#237
MarcOverIP
closed
12 months ago
2
By default turn on alarm backend
#236
xychix
closed
2 years ago
0
source.ip_otherproxies in all redir configs the same
#235
MarcOverIP
closed
2 years ago
0
HA false positive due to Cloudflare error
#234
MarcOverIP
closed
2 years ago
1
Fix mail module (include png from correct location)
#233
xychix
closed
2 years ago
0
No Matching Indices - Debian
#232
PhoenixNP
closed
2 years ago
5
redelk-www/c2logs added
#231
MarcOverIP
closed
2 years ago
0
redelk-www dir non existing
#230
MarcOverIP
closed
2 years ago
0
Logstash Stage1 Download filter parse failure
#229
MarcOverIP
closed
2 years ago
0
Bluecheck content parsing and alarm
#228
MarcOverIP
opened
2 years ago
1
#224 logstash config live mounted
#227
MarcOverIP
closed
2 years ago
0
Multiple xforwardedfor bug
#226
MarcOverIP
closed
2 years ago
0
permission check on www-data on elkserver
#225
MarcOverIP
closed
2 years ago
0
Logstash config files docker mounted by default
#224
MarcOverIP
closed
2 years ago
1
Stack version upgrade
#223
MarcOverIP
closed
2 years ago
0
Kibana app upgrade to 7.16.
#222
MarcOverIP
closed
2 years ago
2
export_kibana_config script not parsing Kibana settings?
#221
MarcOverIP
closed
2 years ago
1
Support for Sliver C2
#220
hypnoticpattern
opened
2 years ago
3
adding enrichment module for Outflank Stage1 implant
#219
xychix
closed
2 years ago
1
Bump Elastic to 7.16.2 to fix #217
#218
fastlorenzo
closed
2 years ago
1
Upgrade Elastic to latest 7.16 due to log4shell
#217
fastlorenzo
closed
2 years ago
8
update logstash to post log4shell version [CVE-2021-44228]
#216
xychix
closed
2 years ago
1
alarm_filehash: fixed timezone issue
#215
fastlorenzo
closed
2 years ago
0
Fixed VT alarm
#214
fastlorenzo
closed
2 years ago
0
Fixed HybridAnalysis results
#213
fastlorenzo
closed
2 years ago
0
Fix Greynoise error when querying null IP in ES
#212
fastlorenzo
closed
2 years ago
0
Fixed typo in IBM module (again)
#211
fastlorenzo
closed
2 years ago
0
Fixed typo in IBM module
#210
fastlorenzo
closed
2 years ago
0
Previous
Next