sophos / sophos-central-api-connectorLinks
Leverage Sophos Central API
☆28Updated last year
Alternatives and similar repositories for sophos-central-api-connector
Users that are interested in sophos-central-api-connector are comparing it to the libraries listed below
Sorting:
- ☆85Updated 4 months ago
- LogRhythm PowerShell Toolkit☆51Updated 2 weeks ago
- Docker configurations for TheHive, Cortex and 3rd party tools☆126Updated 2 years ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆151Updated 4 months ago
- Passive service locator, a python sniffer that identifies servers, clients, names and much more☆253Updated 2 years ago
- Simple integration script for 3rd party systems such as SIEMs. Offers command line, file or syslog output in CEF, JSON or key-value pair …☆135Updated last year
- A Windows event logging and collection baseline focused on finding balance between forensic value and optimising retention.☆288Updated 3 years ago
- A curated list of awesome things related to TheHive & Cortex☆180Updated 3 years ago
- CrowdStrike's Open Source Policy & Contribution Guide☆42Updated 3 months ago
- Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.☆82Updated 2 months ago
- Zeek Log Cheatsheets☆293Updated 2 years ago
- ☆31Updated 3 years ago
- Repository of SentinelOne Deep Visibility queries.☆128Updated 4 years ago
- Search a filesystem for indicators of compromise (IoC).☆74Updated last month
- Windows Event Forwarding subscriptions, configuration files and scripts that assist with implementing ACSC's protect publication, Technic…☆221Updated 5 months ago
- ☆58Updated last year
- The Business Email Compromise Guide sets out to describe 10 steps for performing a Business Email Compromise (BEC) investigation in an Of…☆259Updated 4 years ago
- Run zeek with zeekctl in docker☆51Updated 10 months ago
- Documentation of Cortex☆174Updated last year
- Convert Sigma rules to Wazuh rules☆67Updated last year
- The FASTEST way to consume threat intel.☆68Updated 2 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated 2 years ago
- A list of my personal projects☆177Updated 2 years ago
- Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana☆297Updated 9 months ago
- Run Velociraptor on Security Onion☆38Updated 2 years ago
- Real-time Response scripts and schema☆115Updated last year
- Docker image for MISP☆132Updated last month
- This is a repository for freq.py and freq_server.py☆208Updated 4 years ago
- Cybersecurity Incident Response Plan☆91Updated 4 years ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year