Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform
-
Updated
Jul 28, 2023 - Python
Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform
Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.
TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to TIBER-EU processes.
Crowdstrike Falcon streaming api client in python
Falcon streaming api alert integration for TheHive
Simple Python flask app that runs as a web server, and accepts POST requests from your Mailgun routes.
Auto Close Hive Cases based on Sentinel One resolution
Query and cross-check TheHive (SIRP) alerts based on set severity statuses, and automatically perform various escalations based on your configuration. Integrates with Slack, Twilio, Flask and TheHive.
Create alerts in The Hive from your Thinkst Canary alerts, to be turned into Hive cases.
With this script, you can automatically send the alarms that occur on "McAfee SIEM" to the "TheHive" platform, the alarms you send will be automatically opened as a case.
This analyzer helps you investigate suspicious emails received from known or unknown senders to ensure that their email addresses aren't compromised.
Add a description, image, and links to the thehive-project topic page so that developers can more easily learn about it.
To associate your repository with the thehive-project topic, visit your repo's landing page and select "manage topics."