Skip to content

ZeroRickMore/TreeAlchemist

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

355 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

TreeAlchemist

A tool that allows a user to utilize multiple Attack-Defense Trees to handle Wazuh's Active Responses, allowing for a more suited response based on the history of events, rather than Wazuh's default behavior of counteracting each single event on its own, losing crucial context information.

About

Ever thought of implementing an Attack Defense Tree into the Open-Source Wazuh? This tool is a perfect suit for you. Give an xml written ADT in input, and get the fully converted tree into Wazuh-ready rules, inclusing Active Responses too.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors