Python Sigma

Open-source Python projects categorized as Sigma

Top 4 Python Sigma Projects

  1. Zircolite

    A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

  2. InfluxDB

    InfluxDB – Built for High-Performance Time Series Workloads. InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.

    InfluxDB logo
  3. hayabusa-rules

    Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.

  4. automathon

    A Python library for simulating and visualizing finite automata

  5. Automata

    Automatic detection engineering technical state compliance (by 3CORESec)

NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Python Sigma discussion

Log in or Post with

Python Sigma related posts

  • Chainsaw for Linux

    1 project | /r/blueteamsec | 5 Mar 2023
  • Webapp for converting sigma detection rules into SIEM queries

    3 projects | /r/blueteamsec | 14 May 2022
  • A tool to detect errors early and measure the Effectiveness of SIEM rules against the behaviors that the rule was developed to work against, ensuring that the whole process of data collection, parsing, and query of security data is working properly and alert when things don't work as intended

    1 project | /r/purpleteamsec | 29 Aug 2021
  • Zircolite: A standalone SIGMA-based detection tool for EVTX

    1 project | /r/purpleteamsec | 5 Aug 2021
  • Zircolite - A standalone SIGMA-based detection tool for EVTX

    1 project | /r/purpleteamsec | 6 Apr 2021
  • Battle-tested, standalone and fast SIGMA-based detection tool for EVTX or JSON

    1 project | /r/blueteamsec | 5 Apr 2021
  • A note from our sponsor - InfluxDB
    www.influxdata.com | 15 May 2025
    InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now. Learn more →

Index

What are some of the best open-source Sigma projects in Python? This list will help you:

# Project Stars
1 Zircolite 712
2 hayabusa-rules 175
3 automathon 66
4 Automata 55

Sponsored
InfluxDB – Built for High-Performance Time Series Workloads
InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.
www.influxdata.com

Did you know that Python is
the 2nd most popular programming language
based on number of references?