“The Prime Hunt”的产品徽标图片

The Prime Hunt

4.4(

7 个评分

)
扩展程序开发者工具105 用户
The Prime Hunt的项目媒体 4(屏幕截图)
产品视频缩略图
The Prime Hunt的项目媒体 2(屏幕截图)
The Prime Hunt的项目媒体 3(屏幕截图)
The Prime Hunt的项目媒体 4(屏幕截图)
产品视频缩略图
产品视频缩略图
The Prime Hunt的项目媒体 2(屏幕截图)
The Prime Hunt的项目媒体 3(屏幕截图)
The Prime Hunt的项目媒体 4(屏幕截图)

概述

SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs

The Prime Hunt is a browser extension designed for threat hunting and developed as an open-source project on GitHub (https://github.com/socprime/the-prime-hunt). It's licensed under the Apache License version 2.0. The Prime Hunt introduces a One UI idea to simplify and speed up the investigation process regardless of the SIEMs or EDR in use. This is useful both for threat hunters starting off their careers and for seasoned professionals. The former can master the different security platforms and query languages faster, learning the right methodology from the very beginning, while the latter benefit from a streamlined workflow. One UI for different technologies mirrors the concept of Sigma as a single language for cybersecurity. Sigma rules can be translated into multiple platform formats. This extension helps any threat hunter easily run and tune Sigma rule translations in those platforms, ensuring the community is Sigma-enabled. Meanwhile, sharing query hits (coming soon) helps the entire community measure and consolidate the MITRE ATT&CK® technique prevalence and rule quality. With The Prime Hunt, you can easily see what accounts and assets are affected by the suspicious activity your query detects. Filter for or filter out query results by any field values with one click or look for all events related to them. Easily drill down to any CTI or any other sources that can help you in the investigation

4.4 星(5 星制)7 个评分

详细了解结果和评价。

详情

  • 版本
    1.4.5
  • 上次更新日期
    2024年3月27日
  • 提供方
    SOC Prime Inc.
  • 大小
    349KiB
  • 语言
    English
  • 开发者
    SOC Prime Inc.
    399 Boylston St fl 6 Boston, MA 02116-3305 US
    邮箱
    support@socprime.com
  • 非交易者
    该开发者尚未将自己标识为交易者。欧盟地区消费者须知:消费者权利可能不适用于您与该开发者达成的合约。

隐私权

管理扩展程序并了解它们在组织中的使用情况
该开发者已披露,此产品不会收集或使用您的数据。

该开发者已声明,您的数据:

  • 不会因未获批准的用途出售给第三方
  • 不会为实现与产品核心功能无关的目的而使用或转移
  • 不会为确定信用度或放贷目的而使用或转移

支持

若有任何疑问、建议或问题,请在桌面浏览器中打开此页面

Google 应用