ibmresilient / resilient-python-api
Python Library for the IBM SOAR REST API, a Python SDK for developing Apps for IBM SOAR and more...
☆41Updated 3 weeks ago
Alternatives and similar repositories for resilient-python-api:
Users that are interested in resilient-python-api are comparing it to the libraries listed below
- Example scripts and rules for use in Resilient playbooks.☆34Updated last year
- Source code for IBM SOAR Apps that are available on our App Exchange☆92Updated this week
- Developer documentation for Resilient APIs☆24Updated 3 months ago
- Resilient Automation Functions and Scripts☆15Updated 3 years ago
- Playbooks designed for IBM SOAR developed by The IR Gurus. These playbooks can be used to demonstrate how to design playbooks, perform au…☆14Updated 11 months ago
- Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.☆81Updated last week
- These are open source rules that can be utilized with QRadar to detect various types of threats in the environment.☆54Updated 5 years ago
- These workflows are provided for sample usage, new submissions and updates from the community, and are NOT supported by IBM.☆50Updated 2 months ago
- Public script from SANS FOR509 Enterprise Cloud Incident Response☆198Updated 6 months ago
- ☆57Updated last year
- ☆42Updated 2 years ago
- Quick SOC L1 ticket structure☆35Updated 5 years ago
- ☆131Updated last year
- Repository of public reference frameworks for the DFIR community.☆115Updated last year
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆125Updated 2 years ago
- The Infosec Community Definitive Guide to Jupyter Notebooks☆121Updated 4 years ago
- A list of Splunk queries that I've collected and used over time.☆76Updated 4 years ago
- Reflex SOAR☆12Updated 3 years ago
- ☆58Updated last year
- Repository resource for threat hunter☆158Updated 6 years ago
- A Splunk App containing Sigma detection rules, which can be updated from a Git repository.☆108Updated 5 years ago
- Tools for simulating threats☆183Updated last year
- ☆119Updated 3 years ago
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆200Updated 4 years ago
- ☆93Updated 2 years ago
- ☆42Updated 4 years ago
- Resources for SANS CTI Summit 2021 presentation☆102Updated last year
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆67Updated last year
- This is a repository for freq.py and freq_server.py☆207Updated 4 years ago
- A cross-platform baselining, threat hunting, and attack surface analysis tool for security teams.☆207Updated last week