aw-mfe / gsuite2mfe
Send events from G Suite to McAfee SIEM
☆13Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for gsuite2mfe
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 6 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 4 years ago
- Push "BAD" IPs/Networks into QRadar's "Remote Networks", tag them properly, and use them!☆18Updated 11 years ago
- A Lambda-powered Security Orchestration framework for AWS GuardDuty☆51Updated 4 years ago
- ☆27Updated 10 years ago
- Dockerfiles for containerized osquery☆13Updated 7 years ago
- Grabs the administrator and authentication logs from the Duo Security API and sends CEF-formatted syslog.☆28Updated 8 years ago
- Scripts and integrations for OSSEC☆39Updated 8 years ago
- ☆37Updated 4 years ago
- A platform to create, catalog and deploy tests for tools such as Gauntlt, AttackIQ and Metasploit.☆16Updated 8 years ago
- notes on configuring aws organizations☆11Updated 7 years ago
- WebUI of MineMeld☆43Updated last year
- This command line tool counts the number of resources in different categories across Amazon regions.☆56Updated 4 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 3 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- This script is used to generate some basic detections of the aws security services☆71Updated 2 years ago
- Cloudformation Template and Lambda to detect if Instance Profile credentials are being used outside your AWS Account.☆28Updated 5 years ago
- Manage Splunk Agents and Servers☆16Updated 5 years ago
- Integration for Jira ticket creation from Tenable vulnerability scans☆17Updated 5 years ago
- Splunk app to support presentation at .conf2015 on free security tools and Splunk☆10Updated 9 years ago
- Simple block lists hub for PAN-OS DBL feature☆35Updated 5 years ago
- Ansible playbook to install Malware Information Sharing Platform (MISP)☆17Updated 9 years ago
- ☆55Updated 2 years ago
- Apps for Splunk Phantom security automation | Cisco Meraki | Ansible Tower | F5 | A10☆25Updated 4 years ago
- Proof of Concept Zappa Based AWS Persistence and Attack Platform☆37Updated 4 years ago
- A python script to shift the timestamp on syslog data. Useful for forensicators combating time skew.☆19Updated 2 years ago
- A simple Docker container that serves the MITRE ATT&CK Navigator web app☆26Updated last year
- Tenable.io SDK offers a scalable and safe way to integrate with the Tenable.io platform.☆83Updated 4 years ago
- ☆33Updated 6 years ago