├── LICENSE ├── Makefile ├── README.md ├── customrules ├── es.yml └── splunk.yml ├── dockerfiles └── suricata.dockerfile ├── dredd-cli ├── dredd ├── __init__.py ├── backends │ ├── __init__.py │ ├── base.py │ ├── docker.py │ ├── es.py │ └── suricata.py ├── cli │ ├── __init__.py │ ├── es.py │ └── suricata.py ├── rules │ ├── __init__.py │ ├── custom.py │ └── sigma.py └── utils │ ├── __init__.py │ └── common.py └── requirements.txt /LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/LICENSE -------------------------------------------------------------------------------- /Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/Makefile -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/README.md -------------------------------------------------------------------------------- /customrules/es.yml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/customrules/es.yml -------------------------------------------------------------------------------- /customrules/splunk.yml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/customrules/splunk.yml -------------------------------------------------------------------------------- /dockerfiles/suricata.dockerfile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dockerfiles/suricata.dockerfile -------------------------------------------------------------------------------- /dredd-cli: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd-cli -------------------------------------------------------------------------------- /dredd/__init__.py: -------------------------------------------------------------------------------- 1 | -------------------------------------------------------------------------------- /dredd/backends/__init__.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/backends/__init__.py -------------------------------------------------------------------------------- /dredd/backends/base.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/backends/base.py -------------------------------------------------------------------------------- /dredd/backends/docker.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/backends/docker.py -------------------------------------------------------------------------------- /dredd/backends/es.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/backends/es.py -------------------------------------------------------------------------------- /dredd/backends/suricata.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/backends/suricata.py -------------------------------------------------------------------------------- /dredd/cli/__init__.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/cli/__init__.py -------------------------------------------------------------------------------- /dredd/cli/es.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/cli/es.py -------------------------------------------------------------------------------- /dredd/cli/suricata.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/cli/suricata.py -------------------------------------------------------------------------------- /dredd/rules/__init__.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/rules/__init__.py -------------------------------------------------------------------------------- /dredd/rules/custom.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/rules/custom.py -------------------------------------------------------------------------------- /dredd/rules/sigma.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/rules/sigma.py -------------------------------------------------------------------------------- /dredd/utils/__init__.py: -------------------------------------------------------------------------------- 1 | from .common import glob_directory, json_print 2 | -------------------------------------------------------------------------------- /dredd/utils/common.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SecurityRiskAdvisors/dredd/HEAD/dredd/utils/common.py -------------------------------------------------------------------------------- /requirements.txt: -------------------------------------------------------------------------------- 1 | elasticsearch 2 | docker 3 | sigmatools 4 | click 5 | pyyaml --------------------------------------------------------------------------------