ExtraHop / code-examplesLinks
ExtraHop public code examples
☆37Updated 9 months ago
Alternatives and similar repositories for code-examples
Users that are interested in code-examples are comparing it to the libraries listed below
Sorting:
- This is a script to import Cisco Talos's IP Blacklist into a Tag (Host Group) within Stealthwatch. This will also optionally create a Cu…☆11Updated 2 years ago
- Falcon Integration Gateway (FIG)☆20Updated this week
- Device profile: Define acceptable amounts of traffic for your devices and see a report of outliers.☆16Updated 5 years ago
- Utility to automate generating and uploading STIX files to ExtraHop appliances via the REST API.☆8Updated last month
- ☆89Updated last week
- Caldera plugin to deploy "humans" to emulate user behavior on systems☆28Updated last year
- Plugin source code for the InsightConnect SOAR product, developer documentation at https://docs.rapid7.com/insightconnect/getting-started☆68Updated this week
- Collection of walkthroughs on various threat hunting techniques☆75Updated 5 years ago
- OSSEM Common Data Model☆56Updated 2 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆71Updated 2 years ago
- Designed to be installed on a fresh install of raspbian on a raspberry pi, by combining Respounder (Responder detection) and Artillery (p…☆34Updated 5 years ago
- Run zeek with zeekctl in docker☆54Updated 10 months ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Incident Response Network Tools☆24Updated 4 years ago
- Documentation used for Shuffle☆19Updated this week
- Corelight@Home script☆42Updated last year
- Use Terraform to Provision Your Own Cloud-Based Remote Browsing Workstation☆26Updated last year
- Scripts to inject demo data and network traffic into an existing Alienvault/OSSIM installation☆21Updated 8 years ago
- ☆48Updated last week
- Workflows for Shuffle☆23Updated 2 years ago
- Using QRadar API☆20Updated 7 years ago
- ☆55Updated 4 years ago
- Attack Range to test detection against nativel serverless cloud services and environments☆35Updated 3 years ago
- Wazuh - Splunk App☆55Updated 10 months ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆54Updated 3 weeks ago
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 5 years ago
- Visual Studio Code extension for MITRE ATT&CK☆54Updated last year
- a port made of honey for blocking people☆13Updated 5 years ago
- Extracts fields from zeek logs, compatible with zeek-cut☆23Updated last year
- ☆67Updated 2 weeks ago