Skip to content

ArcSight Logger / Maltego Integration

Notifications You must be signed in to change notification settings

libresec/arcsight-logger-maltego

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

About

aslMaltego ArcSight Logger / Maltego Integration

Notes

This will be rewritten in the near future.

Transforms

aslMaltego.py

Module that handles communications with ArcSight logger, including authentication, SOAP clients, and error handling.

aslMaltego.conf

Configuration that holds ArcSight Logger username, password, and server information. NOTE - The logger API only seems to work with local authentication.

Transforms

maltego.IPv4Address (Entity)

aslFireEye.py

FireEyeMalwareEvent.mtz

Export of custom entity returned by aslFireEye.py transform.

Dependencies

These transforms have been tested in Mac OSX using Python 2.7. In addition, SUDS is used SOAP-related needs.

Thanks

Paterva (@Paterva)
@bostonlink
@ph1lv -- Thanks for the ideas!

About

ArcSight Logger / Maltego Integration

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages