demisto / content-docsLinks
Demisto Content Developer Docs
☆43Updated this week
Alternatives and similar repositories for content-docs
Users that are interested in content-docs are comparing it to the libraries listed below
Sorting:
- This repo represents work the Phantom Community collaborates on to build apps and learn.☆13Updated 4 years ago
- Collaborative Open Playbook Standard☆157Updated 2 years ago
- Demisto SDK - Create Demisto Content with ease and efficiency☆81Updated last week
- Demisto Client for Python☆72Updated this week
- Controls Assessment Specification☆70Updated 8 months ago
- Phantom Apps Repo☆82Updated 4 years ago
- OSSEM Common Data Model☆56Updated 3 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- Community driven repository of Playbooks and Apps for ThreatConnect.☆74Updated last month
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Materials used and mentioned during my talk at SANS Cloud Security Summit 2018 in San Diego☆23Updated 7 years ago
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated last year
- Qualys community open source scripts. Please note these are provided as-is and are not supported.☆112Updated last year
- Pre-configured environment that supports the development and running of OpenDXL solutions☆13Updated 4 years ago
- Actionable data for Security Operations☆19Updated 4 years ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated 2 years ago
- WebUI of MineMeld☆43Updated 2 years ago
- ☆49Updated 2 years ago
- A python package for use in generating fake data for SOC and security automation.☆172Updated 9 months ago
- Attack Range to test detection against nativel serverless cloud services and environments☆35Updated 4 years ago
- List of sigma for a variety of threats for multiple log sources.☆13Updated 7 years ago
- Swagger/ OpenAPI specifications for security products and services☆77Updated last month
- MITRE ATT&CK Framework compliance dashboard and correlation searches that works with Splunk Enterprise Security and ES Content Update☆30Updated last month
- The Infosec Community Definitive Guide to Jupyter Notebooks☆130Updated 5 years ago
- Carbon Black API - Python language bindings☆145Updated last year
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆189Updated 4 years ago
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Updated 5 years ago
- Collection of resources related to the Center for Threat-Informed Defense☆76Updated last year
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆27Updated 4 years ago
- Windows Event Forwarding subscriptions, configuration files and scripts that assist with implementing ACSC's protect publication, Technic…☆227Updated 10 months ago