aw-mfe / gsuite2mfeLinks
Send events from G Suite to McAfee SIEM
☆13Updated 6 years ago
Alternatives and similar repositories for gsuite2mfe
Users that are interested in gsuite2mfe are comparing it to the libraries listed below
Sorting:
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 7 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 5 years ago
- A python script to shift the timestamp on syslog data. Useful for forensicators combating time skew.☆21Updated 3 years ago
- A Lambda-powered Security Orchestration framework for AWS GuardDuty☆53Updated 6 years ago
- This script is used to generate some basic detections of the aws security services☆72Updated 3 years ago
- Tenable.io SDK offers a scalable and safe way to integrate with the Tenable.io platform.☆83Updated 5 years ago
- Web based analysis platform for use with the AWS_IR command line tool.☆17Updated 9 years ago
- Tools for AWS forensics☆65Updated 9 years ago
- Python scripts to download, parse, and enrich scans.io study data and load into Splunk for research, threat intelligence gathering, and s…☆19Updated 3 weeks ago
- Multithreaded threat Intelligence gathering built with Python3☆177Updated 7 years ago
- ☆142Updated last year
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Updated 7 years ago
- Integration for Jira ticket creation from Tenable vulnerability scans☆17Updated 6 years ago
- A simple Docker container that serves the MITRE ATT&CK Navigator web app☆27Updated 2 years ago
- Manage Splunk Agents and Servers☆16Updated 5 months ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- automate your MISP installs☆68Updated 5 years ago
- the fastest way to consume threat intelligence.☆31Updated 2 years ago
- A python module for orchestrating content acquisitions and analysis via amazon ssm.☆58Updated 2 years ago
- Terraform stack to deploy ELK Threat Hunting on Amazon AWS.☆88Updated 6 years ago
- Serverless, low cost, threat intel aggregation for enterprise or personal use, backed by ElasticSearch.☆141Updated 2 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- Scripts and integrations for OSSEC☆41Updated 9 years ago
- CrowdStrike Threat Intelligence☆35Updated 2 years ago
- ☆55Updated 3 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Updated 4 years ago
- A platform to create, catalog and deploy tests for tools such as Gauntlt, AttackIQ and Metasploit.☆17Updated 9 years ago
- Proof of Concept Zappa Based AWS Persistence and Attack Platform☆40Updated 5 years ago
- A Terraform module for GRR: the distributed incident forensics and response framework☆52Updated 5 years ago