The Prime Hunt
8 件の評価
)


概要
SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs
The Prime Hunt is a browser extension designed for threat hunting and developed as an open-source project on GitHub (https://github.com/socprime/the-prime-hunt). It's licensed under the Apache License version 2.0. The Prime Hunt introduces a One UI idea to simplify and speed up the investigation process regardless of the SIEMs or EDR in use. This is useful both for threat hunters starting off their careers and for seasoned professionals. The former can master the different security platforms and query languages faster, learning the right methodology from the very beginning, while the latter benefit from a streamlined workflow. One UI for different technologies mirrors the concept of Sigma as a single language for cybersecurity. Sigma rules can be translated into multiple platform formats. This extension helps any threat hunter easily run and tune Sigma rule translations in those platforms, ensuring the community is Sigma-enabled. Meanwhile, sharing query hits (coming soon) helps the entire community measure and consolidate the MITRE ATT&CK® technique prevalence and rule quality. With The Prime Hunt, you can easily see what accounts and assets are affected by the suspicious activity your query detects. Filter for or filter out query results by any field values with one click or look for all events related to them. Easily drill down to any CTI or any other sources that can help you in the investigation
5 点満点で 4.58 件の評価
詳細
- バージョン1.4.5
- 更新:2024年3月27日
- 提供元SOC Prime Inc.
- サイズ349KiB
- 言語English
- デベロッパーSOC Prime Inc.
399 Boylston St fl 6 Boston, MA 02116-3305 USメール
support@socprime.com - 非取引業者このデベロッパーは取引業者として申告していません。EU 加盟国の消費者とこのデベロッパーとの間に締結された契約には、消費者の権利が適用されません。
プライバシー
このデベロッパーは、お客様のデータについて以下を宣言しています
- 承認されている以外の用途で第三者に販売しないこと
- アイテムの中心機能と関係のない目的で使用または転送しないこと
- 信用力を判断する目的または融資目的で使用または転送しないこと
サポート
質問や提案、問題がある場合は、パソコンのブラウザでこのページを開いてください