Splunk
2025-12-23
Splunk app provides remote searches and monitoring for jobs, data inputs, saved searches, indexes, users, output syslog settings, apps, and license status.
UMV WSS
2025-12-22
UMV WSS app provides a parser, logger model, dashboard, and detection rules for UMV Web Server Safeguard logs.
eStreamer
2025-12-19
The eStreamer app offers a dedicated logger, log schemas, logger model, and dashboards for Firepower systems. The eStreamer logger gathers events from the Cisco Secure Firewall Management Center.
Google Workspace
2025-12-19
Google Workspace app provides audit logs, Google Sheets integration, and dashboard visualizations for accounts, login, admin, OAuth, Google Drive, Google Meet, Google Chat activity logs.
ML Rules
2025-12-19
Machine Learning Rules app provides the feature generation query commands and training datasets needed for machine learning model-based threat detection.
Elasticsearch
2025-12-12
Elasticsearch App provides logger and query commands to retrieve logs from the Elasticsearch via the REST API, or to monitor the Elastic cluster, including indexes, node status, licenses, and more.
React2Shell Scanner
2025-12-07
Scans for React2Shell (CVE-2025-29927, CVE-2025-66478), a Prototype Pollution vulnerability in Next.js Server Actions that can lead to remote code execution.
BLUEMAX WIPS
2025-12-05
BLUEMAX WIPS app provides a WIPS event log parser, logger model, and dashboard.
Memory Analyzer
2025-12-05
Memory Analyzer Tool (MAT) analyzes Java heap dumps to detect memory leaks and analyze object memory usage.
Akamai
2025-12-01
Akamai Apps provides log collector, logger models, and dashboard that support Akamai App & API Protector API integration.
AhnLab MDS
2025-11-18
AhnLab MDS app provides dedicated parsers, logger models, and dashboards for MDS event, scan, malware detection, siteguard, agent status, and performance logs.
WAPPLES
2025-11-13
WAPPLES app provides a dedicated parser, logger model, query commands, intrusion detection and performance dashboards.
MISP
2025-11-06
MISP app provides query commands for MISP events and attributes, as well as real-time IoC detection through threat intelligence feeds.