Skip to content
#

sigma

Here are 298 public repositories matching this topic...

Rustinel is an open-source endpoint detection runtime for Windows and Linux. It collects native telemetry from ETW and eBPF, normalizes events into Sysmon-style fields, evaluates Sigma, YARA, and IOC detections, and emits ECS-compatible NDJSON alerts.

  • Updated May 3, 2026
  • Rust

Improve this page

Add a description, image, and links to the sigma topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the sigma topic, visit your repo's landing page and select "manage topics."

Learn more