
The Prime Hunt bởi SOC Prime, Inc.
SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs
4 Users4 Users
Bạn sẽ cần Firefox để sử dụng tiện ích mở rộng này
Siêu dữ liệu mở rộng
Về tiện ích mở rộng này
The Prime Hunt is a browser extension designed for threat hunting and developed as an open-source project on GitHub (https://github.com/socprime/the-prime-hunt). It's licensed under the Apache License version 2.0. The Prime Hunt introduces a One UI idea to simplify and speed up the investigation process regardless of the SIEMs or EDR in use. This is useful both for threat hunters starting off their careers and for seasoned professionals. The former can master the different security platforms and query languages faster, learning the right methodology from the very beginning, while the latter benefit from a streamlined workflow.
One UI for different technologies mirrors the concept of Sigma as a single language for cybersecurity. Sigma rules can be translated into multiple platform formats. This extension helps any threat hunter easily run and tune Sigma rule translations in those platforms, ensuring the community is Sigma-enabled. Meanwhile, sharing query hits (coming soon) helps the entire community measure and consolidate the MITRE ATT&CK® technique prevalence and rule quality.
With The Prime Hunt, you can easily see what accounts and assets are affected by the suspicious activity your query detects. Filter for or filter out query results by any field values with one click or look for all events related to them. Easily drill down to any CTI or any other sources that can help you in the investigation.
One UI for different technologies mirrors the concept of Sigma as a single language for cybersecurity. Sigma rules can be translated into multiple platform formats. This extension helps any threat hunter easily run and tune Sigma rule translations in those platforms, ensuring the community is Sigma-enabled. Meanwhile, sharing query hits (coming soon) helps the entire community measure and consolidate the MITRE ATT&CK® technique prevalence and rule quality.
With The Prime Hunt, you can easily see what accounts and assets are affected by the suspicious activity your query detects. Filter for or filter out query results by any field values with one click or look for all events related to them. Easily drill down to any CTI or any other sources that can help you in the investigation.
Được xếp hạng 0 (bởi 1 người dùng)
Quyền hạn và dữ liệuTìm hiểu thêm
Quyền hạn bắt buộc:
- Truy cập dữ liệu của bạn trên mọi trang web
Thêm thông tin
- Liên kết tiện ích
- Phiên bản
- 1.4.5
- Kích cỡ
- 365,14 KB
- Cập nhật gần nhất
- một năm trước (26 Thg 03 2024)
- Thể loại có liên quan
- Lịch sử các phiên bản
- Thêm vào bộ sưu tập
Ghi chú phát hành cho phiên bản 1.4.5
We've introduced the following updates:
- Added the capability to open the query in Uncoder AI
- Improved the functionality of saving queries in a custom repository on the SOC Prime Platform:
- Multiple tag selection is supported when saving query metadata
- The link in the successful saving message now opens the custom repository on the SOC Prime Platform where the query has been saved to
- Added the Clear button on the Query tab to remove the value from the Query field
- Added the capability to open the query in Uncoder AI
- Improved the functionality of saving queries in a custom repository on the SOC Prime Platform:
- Multiple tag selection is supported when saving query metadata
- The link in the successful saving message now opens the custom repository on the SOC Prime Platform where the query has been saved to
- Added the Clear button on the Query tab to remove the value from the Query field
Tiện ích mở rộng khác của SOC Prime, Inc.
- Chưa có xếp hạng nào
- Chưa có xếp hạng nào
- Chưa có xếp hạng nào
- Chưa có xếp hạng nào
- Chưa có xếp hạng nào
- Chưa có xếp hạng nào