pysigma-backend-khulnasoft

pySigma KhulnaSoft backend


License
LGPL-2.1-only
Install
pip install pysigma-backend-khulnasoft==0.1.0

Documentation

Tests Status

pySigma Khulnasoft Backend

This is the Khulnasoft backend for pySigma. It provides the package sigma.backends.khulnasoft with the KhulnasoftBackend class. Further, it contains the following processing pipelines in sigma.pipelines.khulnasoft:

  • khulnasoft_windows_pipeline: Khulnasoft Windows log support
  • khulnasoft_windows_sysmon_acceleration_keywords: Adds fiels name keyword search terms to generated query to accelerate search.

It supports the following output formats:

  • default: plain Khulnasoft queries
  • savedsearches: Khulnasoft savedsearches.conf format.