Panther Detections

Panther Detections

Python application to translate Zeek logs into ElasticSearch's bulk load JSON format with detailed instructions and features.

Visit Website

Panther: A Modern SIEM for Scalable Security Operations

Panther is a modern Security Information and Event Management (SIEM) system designed for large-scale security operations. Teams can define their detection rules as code and easily upload them to their Panther deployment.

This repository contains detections developed by the Panther Team and the Community

This repository includes detections created by the Panther Team and contributions from the Community, and we welcome further contributions.

The repository structure includes folders

The repository structure contains folders that define rules for analyzing logs, policies for ensuring secure resource states, and scheduled rules for processing SQL query outputs. Additionally, instructions for setting up the Python environment are provided to guide you through the installation and execution process.