<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Sigma-Cli on Pi Stack</title>
    <link>https://www.pistack.xyz/tags/sigma-cli/</link>
    <description>Recent content in Sigma-Cli on Pi Stack</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Sun, 24 May 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://www.pistack.xyz/tags/sigma-cli/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Self-Hosted Sigma Detection Rule Management: sigma-cli vs pySigma vs evt2sigma</title>
      <link>https://www.pistack.xyz/posts/2026-05-24-self-hosted-sigma-detection-rule-management-sigma-cli-vs-pysigma-vs-evt2sigma-guide/</link>
      <pubDate>Sun, 24 May 2026 00:00:00 +0000</pubDate>
      <guid>https://www.pistack.xyz/posts/2026-05-24-self-hosted-sigma-detection-rule-management-sigma-cli-vs-pysigma-vs-evt2sigma-guide/</guid>
      <description>&lt;p&gt;Sigma is the open standard for writing detection rules in a platform-agnostic format. Instead of maintaining separate rule sets for Splunk, Elastic, QRadar, and every other SIEM platform, security teams write detections once in Sigma format and convert them to the query language of their chosen platform. This approach dramatically reduces detection engineering effort and enables community rule sharing.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
