ExtraHop / code-examplesLinks
ExtraHop public code examples
☆36Updated this week
Alternatives and similar repositories for code-examples
Users that are interested in code-examples are comparing it to the libraries listed below
Sorting:
- Scapy packet fragment reassembly engines☆35Updated 5 years ago
- Attack Range to test detection against nativel serverless cloud services and environments☆35Updated 4 years ago
- This is a script to import Cisco Talos's IP Blacklist into a Tag (Host Group) within Stealthwatch. This will also optionally create a Cu…☆11Updated 2 years ago
- ☆95Updated last week
- Collection of walkthroughs on various threat hunting techniques☆76Updated 5 years ago
- ☆34Updated 4 years ago
- ☆78Updated 3 weeks ago
- Caldera plugin to deploy "humans" to emulate user behavior on systems☆29Updated last year
- This repo represents work the Phantom Community collaborates on to build apps and learn.☆13Updated 4 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆55Updated 2 weeks ago
- Palo Alto Networks App for Splunk leverages the data visibility provided by Palo Alto Networks next-generation firewalls and endpoint sec…☆108Updated last year
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Workflows for Shuffle☆24Updated 3 years ago
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆34Updated 3 years ago
- pcaps for Wireshark tutorial about examining Dridex infection traffic☆17Updated 5 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- Device profile: Define acceptable amounts of traffic for your devices and see a report of outliers.☆16Updated 6 years ago
- Using QRadar API☆20Updated 7 years ago
- Tools for security content automation, baseline tailoring, and overlay development.☆45Updated last year
- Search a filesystem for indicators of compromise (IoC).☆83Updated last month
- Falcon Integration Gateway (FIG)☆21Updated last week
- A simple Docker container that serves the MITRE ATT&CK Navigator web app☆27Updated 2 years ago
- Incident Response Network Tools☆24Updated 4 years ago
- Logs key Windows process performance metrics. #nsacyber☆69Updated 3 years ago
- Use Terraform to Provision Your Own Cloud-Based Remote Browsing Workstation☆26Updated last year
- ☆56Updated 4 years ago
- ☆53Updated this week
- Developer enhancements (DX) for FalconPy, the CrowdStrike Python SDK☆45Updated this week
- Automated process to build and distribute Posture & Exposure Reports' bi-weekly to customers.☆16Updated 6 months ago
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆55Updated 3 years ago