SteenPedersen's Stars
aboutsecurity/rastrea2r
Collecting & Hunting for IOCs with gusto and style
opendxl/opendxl-client-python
OpenDXL Python Client
advanced-threat-research/Creosote
Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.
fireeye/HXTool
HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physical workstation. HXTool provides additional features and capabilities over the standard FireEye HX web user interface. HXTool uses the fully documented REST API that comes with the FireEye HX for communication with the HX environment.
trellix-enterprise/RTS-Queries
Practical Orientation Of MVISION EDR Query Language
trellix-enterprise/ExpertRules
This repository contains a set of rules samples that can be directly used with Trellix Endpoint Security, in the Exploit Prevention policy.
SteenPedersen/EEDK_PowerShell_template
Example of a PowerShell template script which can be deployed and provide feedback to ePO using Custom Props.
trellix-opensource/intelligent-sandbox-api
The repository contains OpenAPI specification for interacting with REST APIs that Trellix Intelligent Sandbox (former: ATD) offers.
built4tech/submit-atd
Powershell cmdlet - Standalone and McAfee Mvision EDR integrated McAfee ATD Submitter.
SteenPedersen/Compliance_Find_unmanaged_AD_Systems
Compare onlines systems in AD with managed systems in ePO
SteenPedersen/EEDK_Batch_Template
Example at BAT/CMD file to be executed by an ePO Package and return results to ePO
SteenPedersen/EEDK_Copy_Logs_to_Agent
EEDK Batch file to copy local Logs to Agent Log folder
SteenPedersen/EEDK_Linux_template
Simple bash script template for EEDK deployment of a script
SteenPedersen/h4l4j
EEDK packages for ePO to help locate vulnerable log4j in your environment
SteenPedersen/Script_to_submit_any_file_to_ATD
PowerShell script example which can submit any file to ATD using Rest API. This can be donr using MV EDR Reaction or EEDK package.
tux78/SOAR
docker-based installation of MISP and intelMQ
McAfeeAndrew/h4l4j
EEDK packages for ePO to help locate vulnerable log4j in your environment
SteenPedersen/EEDK_Drop_eicar_test_file
Small ePO pacakges to verify Eicar test file is detected on Linux and Windows systems
SteenPedersen/ePO_API
Contains different samples for ePO API using PowerShell and Python