/eqllib

Primary LanguagePythonMIT LicenseMIT

EQL Analytics Library

See https://eqllib.readthedocs.io for documentation

alt text

Getting Started

The Event Query Language Analytics Library (eqllib) is a library of event based analytics, written in EQL to detect adversary behaviors identified in MITRE ATT&CK™.