Skip to content

Releases: mtnmunuklu/queries

Queries v2.0.0: Sigma to SPL Conversion🚀

Choose a tag to compare

@mtnmunuklu mtnmunuklu released this 04 Feb 20:08

🔄 Sigma to SPL (Splunk Processing Language) Query Conversion

  • Expanded Compatibility: The project now supports converting Sigma rules to SPL, enabling seamless integration with Splunk for security analysis.
  • Automated Rule Translation: Effortlessly translate Sigma rules into Splunk queries, saving time and ensuring consistency in security operations.

📂 Multi-Platform Query Management

  • The repository now includes both CSIEM and SPL queries, making it a centralized hub for managing detection rules across different SIEM platforms.
  • Organized directory structure for easy access and integration.

📚 Updated Documentation

  • Clear instructions on how to use and integrate SPL queries alongside CSIEM queries.
  • Enhanced guidelines for contributing and managing queries efficiently.

Queries v2.0.0

Now featuring Sigma to SPL query conversion, making it easier than ever to use Sigma rules in Splunk and CSIEM! 🔥🔍

Queries v1.0.0: Initial Release 🚀

Choose a tag to compare

@mtnmunuklu mtnmunuklu released this 21 Jan 10:47

🚀 Features

  • Sigma to CSIEM Query Conversion 🔄

    • Seamless Conversion: The core feature that converts Sigma rules to the CSIEM (Cognitive SIEM) query language, expanding the flexibility of CSIEM for security analysis.
    • Automated Rule Translation: Supports automatic translation of Sigma rules, saving time and effort for users looking to integrate Sigma rules into CSIEM.
  • Enhanced Documentation 📚

    • Comprehensive documentation to guide users through the setup, usage, and contributions to the project.
    • Clear instructions on how to use the CSIEM query language and convert Sigma rules with ease.

Queries v1.0.0 — The initial release of the project, offering Sigma to CSIEM query conversion with comprehensive documentation to support the transition! 🚨🔐