Logo
Panther Detections

Panther Detections

Python application to translate Zeek logs into ElasticSearch's bulk load JSON format with detailed instructions and features.

Visit Website

Panther is a modern SIEM

Panther is a modern SIEM built for security operations at scale. Teams can define detections as code and programmatically upload them to their Panther deployment

This repository contains detections developed

This repository contains detections developed by the Panther Team and the Community, welcoming contributions

The repo structure includes folders

The repo structure includes folders with rules for analyzing logs, policies for secure resource states, and scheduled rules for SQL query outputs. Python environment setup instructions are provided for installation and running.