All Projects → pe3zx → Mthc

pe3zx / Mthc

Licence: mit
All-in-one bundle of MISP, TheHive and Cortex

Projects that are alternatives of or similar to Mthc

MindMaps
#ThreatHunting #DFIR #Malware #Detection Mind Maps
Stars: ✭ 224 (+67.16%)
Mutual labels:  incident-response, dfir, threat-hunting, threat-intelligence
ir scripts
incident response scripts
Stars: ✭ 17 (-87.31%)
Mutual labels:  incident-response, dfir, threat-hunting
Azure-Sentinel-4-SecOps
Microsoft Sentinel SOC Operations
Stars: ✭ 140 (+4.48%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
Signature Base
Signature base for my scanner tools
Stars: ✭ 1,212 (+804.48%)
Mutual labels:  dfir, threat-hunting, threat-intelligence
Patrowldocs
PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform
Stars: ✭ 105 (-21.64%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
CCXDigger
The CyberCX Digger project is designed to help Australian organisations determine if they have been impacted by certain high profile cyber security incidents. Digger provides threat hunting functionality packaged in a simple-to-use tool, allowing users to detect certain attacker activities; all for free.
Stars: ✭ 45 (-66.42%)
Mutual labels:  incident-response, dfir, threat-intelligence
Ioc Explorer
Explore Indicators of Compromise Automatically
Stars: ✭ 73 (-45.52%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
Intelowl
Intel Owl: analyze files, domains, IPs in multiple ways from a single API at scale
Stars: ✭ 2,114 (+1477.61%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
rhq
Recon Hunt Queries
Stars: ✭ 66 (-50.75%)
Mutual labels:  incident-response, dfir, threat-hunting
Threatpinchlookup
Documentation and Sharing Repository for ThreatPinch Lookup Chrome & Firefox Extension
Stars: ✭ 257 (+91.79%)
Mutual labels:  dfir, incident-response, threat-hunting
Watcher
Watcher - Open Source Cybersecurity Threat Hunting Platform. Developed with Django & React JS.
Stars: ✭ 324 (+141.79%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
Beagle
Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
Stars: ✭ 976 (+628.36%)
Mutual labels:  dfir, incident-response, threat-hunting
Oriana
Oriana is a threat hunting tool that leverages a subset of Windows events to build relationships, calculate totals and run analytics. The results are presented in a Web layer to help defenders identify outliers and suspicious behavior on corporate environments.
Stars: ✭ 152 (+13.43%)
Mutual labels:  dfir, incident-response, threat-hunting
Patrowlengines
PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform
Stars: ✭ 162 (+20.9%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
Threathunt
ThreatHunt is a PowerShell repository that allows you to train your threat hunting skills.
Stars: ✭ 92 (-31.34%)
Mutual labels:  dfir, incident-response, threat-hunting
fastfinder
Incident Response - Fast suspicious file finder
Stars: ✭ 116 (-13.43%)
Mutual labels:  incident-response, dfir, threat-hunting
YAFRA
YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.
Stars: ✭ 22 (-83.58%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
Patrowlmanager
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
Stars: ✭ 363 (+170.9%)
Mutual labels:  incident-response, threat-hunting, threat-intelligence
Threatingestor
Extract and aggregate threat intelligence.
Stars: ✭ 439 (+227.61%)
Mutual labels:  dfir, threat-hunting, threat-intelligence
Malcom
Malcom - Malware Communications Analyzer
Stars: ✭ 988 (+637.31%)
Mutual labels:  dfir, threat-intelligence

mthc mthc

mthc orginally came from MISP, TheHive and Cortex. It is intentionally built to automatically deploy MISP, TheHive and Cortex in one shot. By the way, due to limitiation from each platform, I cannot find a way truly automate the build process without manual configuration. Some processes such as registration and grabbing/providing API keys still required human interaction.

mthc comes with built-in reverse proxy that can be used to support either plain HTTP or HTTP with SSL/TLS. FiloSottile/mkcert provides a simple way to generate locally trusted certificates for testing.

Deployment

See Deployment page on Wiki for deployment instructions and require parameters

License

See LICENSE

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].