This analyzer helps you investigate suspicious emails received from known or unknown senders to ensure that their email addresses aren't compromised.
-
Updated
Sep 15, 2020 - Python
This analyzer helps you investigate suspicious emails received from known or unknown senders to ensure that their email addresses aren't compromised.
Auto Close Hive Cases based on Sentinel One resolution
Query and cross-check TheHive (SIRP) alerts based on set severity statuses, and automatically perform various escalations based on your configuration. Integrates with Slack, Twilio, Flask and TheHive.
Create alerts in The Hive from your Thinkst Canary alerts, to be turned into Hive cases.
With this script, you can automatically send the alarms that occur on "McAfee SIEM" to the "TheHive" platform, the alarms you send will be automatically opened as a case.
Falcon streaming api alert integration for TheHive
Simple Python flask app that runs as a web server, and accepts POST requests from your Mailgun routes.
Crowdstrike Falcon streaming api client in python
TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to TIBER-EU processes.
Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.
Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform
Add a description, image, and links to the thehive-project topic page so that developers can more easily learn about it.
To associate your repository with the thehive-project topic, visit your repo's landing page and select "manage topics."