Apps

Find available Logpresso apps.

MITRE D3FEND

2026-01-24

The MITRE D3FEND app provides dashboards and query commands for the MITRE D3FEND framework.

SECUI MF2

2026-01-23

SECUI MF2 app provides a parser, logger model, and traffic dashboard for MF2 v2, v3, v4 firewall logs.

Sigma Rules

2026-01-10

The Sigma app converts Sigma rules into Logpresso queries and provides them.

GitHub

2025-12-29

GitHub app provides a logger model, extended query commands, dashboards, and detection rules for GitHub service.

Slack

2025-12-25

The Slack app provides the functionality to send messages or dashboard images to Slack channels. When using the Slack Enterprise Grid plan, it supports audit log collection, dashboards, and threat detection.

NGFCTI

2025-12-23

Synchronize IP, domain, URL threat information and malware MD5 and SHA256 information from the FCTI service of the Financial Security Institute.

Splunk

2025-12-23

Splunk app provides remote searches and monitoring for jobs, data inputs, saved searches, indexes, users, output syslog settings, apps, and license status.

UMV WSS

2025-12-22

UMV WSS app provides a parser, logger model, dashboard, and detection rules for UMV Web Server Safeguard logs.

eStreamer

2025-12-19

The eStreamer app offers a dedicated logger, log schemas, logger model, and dashboards for Firepower systems. The eStreamer logger gathers events from the Cisco Secure Firewall Management Center.

Google Workspace

2025-12-19

Google Workspace app provides audit logs, Google Sheets integration, and dashboard visualizations for accounts, login, admin, OAuth, Google Drive, Google Meet, Google Chat activity logs.

ML Rules

2025-12-19

Machine Learning Rules app provides the feature generation query commands and training datasets needed for machine learning model-based threat detection.

APIVoid

2025-12-19

Check IP or domain reputation using APIVoid REST API.

Elasticsearch

2025-12-12

Elasticsearch App provides logger and query commands to retrieve logs from the Elasticsearch via the REST API, or to monitor the Elastic cluster, including indexes, node status, licenses, and more.

React2Shell Scanner

2025-12-07

Scans for React2Shell (CVE-2025-29927, CVE-2025-66478), a Prototype Pollution vulnerability in Next.js Server Actions that can lead to remote code execution.

BLUEMAX WIPS

2025-12-05

BLUEMAX WIPS app provides a WIPS event log parser, logger model, and dashboard.