wagga40 / Zircolite

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
671 stars 91 forks source link

Add the ability to specify the index when forwarding to splunk #61 #62

Closed wagga40 closed 1 year ago

wagga40 commented 1 year ago

Update docs Update rules