Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform
-
Updated
Jul 28, 2023 - Python
Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform
Query and cross-check TheHive (SIRP) alerts based on set severity statuses, and automatically perform various escalations based on your configuration. Integrates with Slack, Twilio, Flask and TheHive.
TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to TIBER-EU processes.
With this script, you can automatically send the alarms that occur on "McAfee SIEM" to the "TheHive" platform, the alarms you send will be automatically opened as a case.
Falcon streaming api alert integration for TheHive
This analyzer helps you investigate suspicious emails received from known or unknown senders to ensure that their email addresses aren't compromised.
Create alerts in The Hive from your Thinkst Canary alerts, to be turned into Hive cases.
Auto Close Hive Cases based on Sentinel One resolution
Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.
Simple Python flask app that runs as a web server, and accepts POST requests from your Mailgun routes.
Crowdstrike Falcon streaming api client in python
Add a description, image, and links to the thehive-project topic page so that developers can more easily learn about it.
To associate your repository with the thehive-project topic, visit your repo's landing page and select "manage topics."