PaloAltoNetworks / autofocus-lenzLinks
A command line utility to aid in using autofocus for IR and research
☆27Updated 6 years ago
Alternatives and similar repositories for autofocus-lenz
Users that are interested in autofocus-lenz are comparing it to the libraries listed below
Sorting:
- WebUI of MineMeld☆43Updated 2 years ago
- Engine of MineMeld☆141Updated 2 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 6 years ago
- Bro scripts written by CrowdStrike Services☆148Updated 4 years ago
- Collecting & Hunting for IOCs with gusto and style☆117Updated 7 years ago
- ☆48Updated 9 years ago
- Carbon Black API Resources☆93Updated 7 years ago
- Scripts for Bro IDS and ELK Stack☆57Updated 10 years ago
- Various Bro scripts☆96Updated 9 years ago
- Prototypes for MineMeld nodes☆39Updated 4 years ago
- CIF v3 -- the fastest way to consume threat intelligence☆183Updated 2 years ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Updated 6 years ago
- ☆17Updated 5 years ago
- Analysis scripts for the Bro Intrusion Detection System☆58Updated 11 years ago
- ☆72Updated 4 years ago
- Dashboards and loader for ROCK NSM dashboards☆49Updated 2 years ago
- Parse a report and import the events into MISP☆29Updated 10 years ago
- DEPRECATED - USE v3 (bearded-avenger)☆229Updated 7 years ago
- A Python module for Palo Alto Networks' WildFire API☆11Updated 5 years ago
- Carbon Black Feeds☆73Updated 2 years ago
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated last year
- A utility repo to assist with converting between MISP and STIX formats☆69Updated 4 years ago
- Python Wrapper for Tanium's SOAP API☆44Updated 6 years ago
- The Bro/Zeek language cheat sheet☆53Updated 12 years ago
- ☆55Updated 3 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 7 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 10 years ago
- ☆38Updated 7 years ago
- Splunk Boss of the SOC v1 data set.☆113Updated 7 years ago
- CrowdStrike Falcon Orchestrator provides automated workflow and response capabilities☆189Updated last year