Auto Close Hive Cases based on Sentinel One resolution
-
Updated
Aug 26, 2020 - Python
Auto Close Hive Cases based on Sentinel One resolution
With this script, you can automatically send the alarms that occur on "McAfee SIEM" to the "TheHive" platform, the alarms you send will be automatically opened as a case.
Falcon streaming api alert integration for TheHive
Simple Python flask app that runs as a web server, and accepts POST requests from your Mailgun routes.
This analyzer helps you investigate suspicious emails received from known or unknown senders to ensure that their email addresses aren't compromised.
Crowdstrike Falcon streaming api client in python
Create alerts in The Hive from your Thinkst Canary alerts, to be turned into Hive cases.
Query and cross-check TheHive (SIRP) alerts based on set severity statuses, and automatically perform various escalations based on your configuration. Integrates with Slack, Twilio, Flask and TheHive.
TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to TIBER-EU processes.
Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.
Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform
Add a description, image, and links to the thehive-project topic page so that developers can more easily learn about it.
To associate your repository with the thehive-project topic, visit your repo's landing page and select "manage topics."