Crowdstrike Falcon streaming api client in python
-
Updated
Jan 31, 2019 - Python
Crowdstrike Falcon streaming api client in python
Simple Python flask app that runs as a web server, and accepts POST requests from your Mailgun routes.
Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.
Auto Close Hive Cases based on Sentinel One resolution
Create alerts in The Hive from your Thinkst Canary alerts, to be turned into Hive cases.
This analyzer helps you investigate suspicious emails received from known or unknown senders to ensure that their email addresses aren't compromised.
Falcon streaming api alert integration for TheHive
With this script, you can automatically send the alarms that occur on "McAfee SIEM" to the "TheHive" platform, the alarms you send will be automatically opened as a case.
TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to TIBER-EU processes.
Query and cross-check TheHive (SIRP) alerts based on set severity statuses, and automatically perform various escalations based on your configuration. Integrates with Slack, Twilio, Flask and TheHive.
Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform
Add a description, image, and links to the thehive-project topic page so that developers can more easily learn about it.
To associate your repository with the thehive-project topic, visit your repo's landing page and select "manage topics."