An autometed sniffer and parser designed to send packets captured by Wireshark to Google Chronicle.
-
Updated
May 18, 2025 - Python
An autometed sniffer and parser designed to send packets captured by Wireshark to Google Chronicle.
Operate Google SecOps (Chronicle SIEM + Siemplify SOAR) as code — a Go CLI and unofficial SDK
Creates daily Gemini LLM based reports for Google Cloud documentation changes
Detection-as-code for three BFSI-targeting banking trojans (Banana RAT/SHADOW-WATER-063, TrickMo/Coper, TCLBANKER): Sigma + Microsoft Sentinel (KQL) + Google SecOps (YARA-L) rules, IOCs with GTI verdicts, and MITRE ATT&CK coverage.
Central Fleet Management Console & Observability Control Plane for LegacyTel. Features a real-time glassmorphic security log auditor, network topology mapping, OTLP log ingestion, dynamic agent upgrades, and automated hot-swap/rollback policy orchestration.
An experimental Chrome Extension that provides keyboard shortcuts in the Google SecOps UX
Feed monitoring system for Google SecOps
Replay Google TI (VT) EVTX Sandbox data into Google SecOps
A Python script that can bulk close Google SecOps SOAR cases.
Add a description, image, and links to the google-secops topic page so that developers can more easily learn about it.
To associate your repository with the google-secops topic, visit your repo's landing page and select "manage topics."