netskopeoss / ta_cloud_exchange
☆12Updated 2 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for ta_cloud_exchange
- Scripts that cover the basics of interacting with the AMP for Endpoints API☆17Updated 5 years ago
- Command-line tool that interacts with Palo Alto firewalls and Panorama☆19Updated last year
- Ansible playbook for installing MineMeld on Linux☆48Updated 3 years ago
- public assets for ironcat emulation software ;)☆14Updated last year
- Prototypes for MineMeld nodes☆39Updated 3 years ago
- ☆131Updated 7 months ago
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆123Updated 2 years ago
- ☆125Updated 11 months ago
- ☆118Updated 2 years ago
- ☆37Updated last week
- This is a repository for freq.py and freq_server.py☆199Updated 4 years ago
- Read only mirror. To contribute or submit issues, please go to the website link --->☆12Updated last year
- Main MineMeld documentation repo☆380Updated 7 years ago
- Engine of MineMeld☆141Updated last year
- This was code for analyzing round 1 of the MITRE Enterprise ATT&CK Evaluation. Please check out https://github.com/joshzelonis/Enterprise…☆95Updated 4 years ago
- The unofficial XSOAR CLI☆14Updated last year
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated 6 months ago
- WebUI of MineMeld☆43Updated last year
- Pulls IOCs from MISP and adds the to reference sets in QRadar☆33Updated last year
- A tool for bulk URL queries against Palo Alto Networks' PAN-DB cloud database☆18Updated last year
- Splunk code (SPL) for serious threat hunters and detection engineers.☆266Updated 9 months ago
- Syslog Connector for the Carbon Black Cloud☆28Updated last month
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆92Updated 2 years ago
- Carbon Black API - Python language bindings☆147Updated 2 months ago
- Useful network monitoring, analysis, and active response tools used or mentioned in the SANS SEC503 course (https://www.sans.org/course/i…☆209Updated 3 weeks ago
- Unofficial Python SDK for Zscaler☆38Updated 3 weeks ago
- This repository contains a few examples of actions that can be added to rules within Elastic Security.☆22Updated 2 years ago
- ☆207Updated last year