daveherrald / TA-cyberchef
A set of Splunk workflow action definitions to export field values to CyberChef for further analysis.
☆12Updated 7 years ago
Alternatives and similar repositories for TA-cyberchef:
Users that are interested in TA-cyberchef are comparing it to the libraries listed below
- ☆36Updated 8 years ago
- This is the Splunk App integrated with Tanium☆10Updated 7 years ago
- CB API scripts for IR, administration, etc.☆32Updated 5 years ago
- ☆54Updated 3 years ago
- InvestigationPlaybookSpec☆72Updated 7 years ago
- Command line interface to Carbon Black Response☆38Updated 4 years ago
- Carbonblack Live Response from the comfort of your own terminal☆20Updated 9 years ago
- Sysmon Splunk App☆46Updated 6 years ago
- PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.☆50Updated 7 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Updated 5 years ago
- Add-on for ingesting DMARC aggregate reports into Splunk☆15Updated 2 years ago
- Harbinger Threat Intelligence☆82Updated 9 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 7 years ago
- Unification of dnstwist + SQLite + Email reporting. Set it as a cron job that runs every hour, give it a list of domains and email addres…☆66Updated 7 years ago
- AlienVault Open Threat Exchange App For Splunk☆9Updated 10 years ago
- Analyze binaries collected in VMware Carbon Black EDR against Yara rules.☆37Updated 2 years ago
- Collecting & Hunting for IOCs with gusto and style☆116Updated 6 years ago
- This is a repository from Adam Swan and I's presentation on Windows Logs Zero 2 Hero.☆22Updated 7 years ago
- Integrate Zeek with Alienvault OTX☆25Updated 4 years ago
- ☆38Updated 6 years ago
- Bro things..☆15Updated 9 years ago
- This technology adapter add-on fetches emails for Splunk to index from mailboxes using either POP3 or IMAP, with or without SSL.☆9Updated 3 years ago
- Splunk Boss of the SOC v1 data set.☆111Updated 6 years ago
- Carbon Black Feeds☆72Updated last year
- ☆48Updated 9 years ago
- Maps process creation logged by Sysmon uses Google Org Chart API☆24Updated 9 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Updated 4 years ago
- Python library for the ArcSight logger REST API☆27Updated 3 years ago
- Log Examination Tool☆26Updated 8 years ago
- Python Wrapper for Tanium's SOAP API☆45Updated 5 years ago