From 91294c35dc5541e3e3cbf5201188c8e375f9891c Mon Sep 17 00:00:00 2001 From: Adel K Date: Fri, 21 Jan 2022 00:52:29 +0100 Subject: [PATCH] Update README.md Add VAST --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index d0b9f4f..0500854 100644 --- a/README.md +++ b/README.md @@ -74,6 +74,7 @@ - [Capa](https://github.com/fireeye/capa) - An open-source tool to identify capabilities in executable files. - [Splunk Security Content](https://github.com/splunk/security_content) Splunk-curated detection content that can easily be used accross many SIEMs (see Uncoder Rule Converter.) - [Threat Bus](https://github.com/tenzir/threatbus) - Threat intelligence dissemination layer to connect security tools through a distributed publish/subscribe message broker. +- [VAST] - A network telemetry engine for data-driven security investigations. - [zeek2es](https://github.com/corelight/zeek2es) - An open source tool to convert Zeek logs to Elastic/OpenSearch. You can also output pure JSON from Zeek's TSV logs! #### Alerting Engine