Context too long, using prompt only
This commit is contained in:
@@ -113,64 +113,6 @@ tools:
|
||||
accessType: download
|
||||
license: VSL
|
||||
knowledgebase: false
|
||||
- name: TheHive 5
|
||||
icon: 🐝
|
||||
type: software
|
||||
description: >-
|
||||
Die zentrale Incident-Response-Plattform orchestriert komplexe
|
||||
Sicherheitsvorfälle vom ersten Alert bis zum Abschlussbericht. Jeder Case
|
||||
wird strukturiert durch Observables (IOCs), Tasks und Zeitleisten
|
||||
abgebildet. Die Cortex-Integration automatisiert Analysen durch Dutzende
|
||||
Analyzer - von VirusTotal-Checks bis Sandbox-Detonation.
|
||||
MISP-Synchronisation reichert Cases mit Threat-Intelligence an. Das
|
||||
ausgeklügelte Rollen- und Rechtesystem ermöglicht sichere Zusammenarbeit
|
||||
zwischen SOC-Analysten, Forensikern und Management. Templates
|
||||
standardisieren Response-Prozesse nach Incident-Typ. Die RESTful API
|
||||
integriert nahtlos mit SIEM, SOAR und Ticketing-Systemen. Metrics und
|
||||
KPIs messen die Team-Performance. Die Community Edition bleibt kostenlos
|
||||
für kleinere Teams, während Gold/Platinum-Lizenzen Enterprise-Features
|
||||
bieten.
|
||||
domains:
|
||||
- incident-response
|
||||
- static-investigations
|
||||
- malware-analysis
|
||||
- network-forensics
|
||||
- fraud-investigation
|
||||
phases:
|
||||
- data-collection
|
||||
- examination
|
||||
- analysis
|
||||
- reporting
|
||||
platforms:
|
||||
- Web
|
||||
related_software:
|
||||
- MISP
|
||||
- Cortex
|
||||
- Elasticsearch
|
||||
domain-agnostic-software:
|
||||
- collaboration-general
|
||||
skillLevel: intermediate
|
||||
accessType: server-based
|
||||
url: https://strangebee.com/thehive/
|
||||
projectUrl: ''
|
||||
license: Community Edition (Discontinued) / Commercial
|
||||
knowledgebase: false
|
||||
statusUrl: https://uptime.example.lab/api/badge/1/status
|
||||
tags:
|
||||
- web-interface
|
||||
- case-management
|
||||
- collaboration
|
||||
- api
|
||||
- workflow
|
||||
- multi-user-support
|
||||
- cortex-analyzer
|
||||
- misp-integration
|
||||
- playbooks
|
||||
- metrics
|
||||
- rbac
|
||||
- template-driven
|
||||
related_concepts:
|
||||
- Digital Evidence Chain of Custody
|
||||
- name: MISP
|
||||
icon: 🌐
|
||||
type: software
|
||||
@@ -223,7 +165,6 @@ tools:
|
||||
related_concepts:
|
||||
- Hash Functions & Digital Signatures
|
||||
related_software:
|
||||
- TheHive 5
|
||||
- Cortex
|
||||
- OpenCTI
|
||||
- name: DFIR-IRIS
|
||||
@@ -260,7 +201,6 @@ tools:
|
||||
platforms:
|
||||
- Web
|
||||
related_software:
|
||||
- TheHive 5
|
||||
- MISP
|
||||
- OpenCTI
|
||||
domain-agnostic-software:
|
||||
|
||||
Reference in New Issue
Block a user