An autometed sniffer and parser designed to send packets captured by Wireshark to Google Chronicle.
-
Updated
May 18, 2025 - Python
An autometed sniffer and parser designed to send packets captured by Wireshark to Google Chronicle.
Operate Google SecOps (Chronicle SIEM + Siemplify SOAR) as code — a Go CLI and unofficial SDK
Central Fleet Management Console & Observability Control Plane for LegacyTel. Features a real-time glassmorphic security log auditor, network topology mapping, OTLP log ingestion, dynamic agent upgrades, and automated hot-swap/rollback policy orchestration.
Creates daily Gemini LLM based reports for Google Cloud documentation changes
Detection-as-code for three BFSI-targeting banking trojans (Banana RAT/SHADOW-WATER-063, TrickMo/Coper, TCLBANKER): Sigma + Microsoft Sentinel (KQL) + Google SecOps (YARA-L) rules, IOCs with GTI verdicts, and MITRE ATT&CK coverage.
An experimental Chrome Extension that provides keyboard shortcuts in the Google SecOps UX
Feed monitoring system for Google SecOps
A Python script that can bulk close Google SecOps SOAR cases.
Replay Google TI (VT) EVTX Sandbox data into Google SecOps
Add a description, image, and links to the google-secops topic page so that developers can more easily learn about it.
To associate your repository with the google-secops topic, visit your repo's landing page and select "manage topics."