sophos / sophos-central-api-connector
Leverage Sophos Central API
☆27Updated last year
Alternatives and similar repositories for sophos-central-api-connector:
Users that are interested in sophos-central-api-connector are comparing it to the libraries listed below
- ☆83Updated 2 months ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆65Updated 3 years ago
- ☆58Updated last year
- ☆58Updated last year
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated last year
- LogRhythm PowerShell Toolkit☆51Updated 3 months ago
- Simple integration script for 3rd party systems such as SIEMs. Offers command line, file or syslog output in CEF, JSON or key-value pair …☆131Updated last year
- Convert Sigma rules to Wazuh rules☆64Updated last year
- Repository of SentinelOne Deep Visibility queries.☆127Updated 3 years ago
- Tool to extract Sessions, MessageID(s) and find the emails belonging to MessageID(s). This script utilizes the MailItemsAccessed features…☆41Updated 4 years ago
- Real-time Response scripts and schema☆110Updated last year
- Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.☆82Updated last month
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year
- MISP to Sentinel integration☆67Updated last month
- Convert Sigma rules to LogRhythm searches☆21Updated 3 years ago
- Run zeek with zeekctl in docker☆51Updated 7 months ago
- Collection of PowerShell functinos and scripts a Blue Teamer might use☆83Updated last year
- Web based S1 query navigator for one-click threat hunting☆19Updated 4 years ago
- The Infosec Community Definitive Guide to Jupyter Notebooks☆121Updated 4 years ago
- CrowdStrike's Open Source Policy & Contribution Guide☆39Updated last month
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆53Updated 2 years ago
- The Project can be used to integrate QRadar with MISP Threat Sharing Platform☆39Updated 2 years ago
- Cybersecurity Incident Response Plan☆90Updated 4 years ago
- ☆72Updated 6 months ago
- A list of Splunk queries that I've collected and used over time.☆81Updated 4 years ago
- Docker image for Velocidex Velociraptor☆126Updated 2 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆149Updated last month
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated 2 weeks ago
- ☆54Updated 3 years ago