Parses the FireEye HX .mans triage collections and sends them to ElasticSearch
☆17Feb 17, 2023Updated 3 years ago
Alternatives and similar repositories for mans_to_es
Users that are interested in mans_to_es are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Virustotal Data to Timesketch☆16Feb 28, 2019Updated 7 years ago
- Python API for the LimaCharlie.io service.☆23Updated this week
- An informational repo about hunting for adversaries in your IT environment.☆14Apr 10, 2017Updated 8 years ago
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- Generate bulk YARA rules from YAML input☆22Feb 3, 2020Updated 6 years ago
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A Python script for indexing (putting) FireEye alert data into Elasticsearch...and notifying you too.☆16Dec 11, 2018Updated 7 years ago
- Walking the PEB in VBA☆24Apr 6, 2020Updated 5 years ago
- Security Operations Center Multiple Purpose Tool, takes IP address input, conducts OSINT, conducts splunk, bro, fireeye, imperva, and fir…☆22Jun 6, 2017Updated 8 years ago
- PowerShell Script to facilitate the processing of SRUM data for on-the-fly forensics and if needed threat hunting☆23Oct 26, 2019Updated 6 years ago
- ☆50Aug 11, 2023Updated 2 years ago
- Lockheed Martin developed utility to compare two CycloneDX SBOMs☆19Oct 21, 2021Updated 4 years ago
- Python script to automatically create sigma rules from The hive observables☆25Mar 17, 2019Updated 7 years ago
- Ansible playbook to convert Sigma rules to ElastAlert rules☆10Feb 5, 2021Updated 5 years ago
- EmailScanner is an integration application in python that uses `exchangelib` to process mail items in Microsoft exchange.☆12Apr 9, 2019Updated 6 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- CTF designed for Middle School-aged kids☆12Oct 18, 2024Updated last year
- Publicly shareable windows event log message data☆28Nov 29, 2019Updated 6 years ago
- ☆34Updated this week
- A Sigma based detection pipeline☆12Dec 15, 2023Updated 2 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Jun 11, 2017Updated 8 years ago
- Reflex SOAR☆12Apr 1, 2022Updated 3 years ago
- The Measure, Maximize, and Mature Threat-Informed Defense (M3TID) project defines what Threat-Informed Defense (TID) is and the key activ…☆16Jun 25, 2025Updated 9 months ago
- A rewrite of mactime, a bodyfile reader☆40Aug 5, 2024Updated last year
- LaTeX Report Template for Offensive Security's OSCP Exam.☆14Mar 13, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- Write-ups for FireEye's FLARE-On challenges☆25Aug 8, 2019Updated 6 years ago
- STIX 2.1 Visualizer, Attack and Activity Thread Graph for Threat Modeling☆33Dec 9, 2024Updated last year
- Bypass AMSI and Defender using Ordinal Values☆41Apr 15, 2020Updated 5 years ago
- Django Tasks Manager - Simple Celery Integration | AppSeed☆14Nov 1, 2022Updated 3 years ago
- ☆10Feb 25, 2021Updated 5 years ago
- Mimikatz HashClash☆12May 8, 2015Updated 10 years ago
- PoC compilation of libyara into WASM, for potential future CyberChef integration☆14Sep 18, 2022Updated 3 years ago
- IDAPython scripts☆15Aug 24, 2017Updated 8 years ago
- Web interface to IntelMQ☆10Sep 10, 2025Updated 6 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- Lists a public S3 bucket☆13Oct 17, 2015Updated 10 years ago
- pspgen utility on top of DPDK☆14Mar 21, 2016Updated 10 years ago
- This tool will listen on a given port, strip SSL encryption, forward traffic through a plain TCP proxy, then encrypt the returning traffi…☆31Oct 18, 2021Updated 4 years ago
- Different DFIR and CTI utilities☆39May 13, 2020Updated 5 years ago
- Repository resource threat intelligence for SOC☆10Sep 14, 2018Updated 7 years ago
- The "Let's-defend-solution" directory contains the answers to all paths of the Let's Defend platform that were saved by the creator 8 mon…☆12Apr 27, 2023Updated 2 years ago
- Django web interface for managing Yara rules☆196Jul 28, 2018Updated 7 years ago