Pinned Repositories
AWS_to_Firepower
Parses AWS IP addresses and can create Network Group Objects in Firepower Management Center
block_doh_firepower
Pulls DoH domains and resolves them to IP addresses. Then it creates a Network Group Object in Firepower to be blocked (or something else).
cisco_rapid_threat_containment
A sample application for Rapid Threat Containment (with ISE) and penalty tracking based on AMP, Umbrella and Stealthwatch events.
Firepower_O365_Feed_Parser
This is a Sample Script that can parse the O365 Web Service API and upload it to Firepower Management Center as Group Objects.
meraki-mx-security-events-workflow
sample_python_vulns
securex_dashboard_tiles
securex_incident_correlator
talos_blog_to_casebook
This is a sample script how to parse the Talos blogs, and automatically add observables to Cisco Casebook.
twitter_search_threatresponse
Twitter Search to Cisco Threat Response Casebook [v1.0]
chrivand's Repositories
chrivand/Firepower_O365_Feed_Parser
This is a Sample Script that can parse the O365 Web Service API and upload it to Firepower Management Center as Group Objects.
chrivand/talos_blog_to_casebook
This is a sample script how to parse the Talos blogs, and automatically add observables to Cisco Casebook.
chrivand/twitter_search_threatresponse
Twitter Search to Cisco Threat Response Casebook [v1.0]
chrivand/meraki-mx-security-events-workflow
chrivand/block_doh_firepower
Pulls DoH domains and resolves them to IP addresses. Then it creates a Network Group Object in Firepower to be blocked (or something else).
chrivand/AWS_to_Firepower
Parses AWS IP addresses and can create Network Group Objects in Firepower Management Center
chrivand/sample_python_vulns
chrivand/securex_incident_correlator
chrivand/action-kenna-cve-exploits-js
chrivand/action-webex-js
chrivand/amp-umb-mssp-sxo
chrivand/github-kenna-securex-workflow
chrivand/MISP-SecureX-Orchestration-Workflows
chrivand/thousand-eyes-securex-response
chrivand/thousandeyes-umbrella
chrivand/UmbrellaAdBlocker
chrivand/action-wxt
Action to post message to Webex Teams
chrivand/ansible-module
Tetration Ansible Collection
chrivand/bigevilbeard
chrivand/chrivand
chrivand/isolate_endpoint_with_approval
chrivand/kenna-secx-incident-enrich
This workflow periodically checks SecureX incidents for Threat Detected Events from Cisco Secure Endpoint. When an incident is returned, the workflow collects all observations from it and reaches to Kenna Security for vulnerabilities information related to executed malware. If information is returned, the workflow updates the incident in SecureX to document the findings. This workflow is designed to run every 5 minutes on a schedule.
chrivand/pandas-devnet
chrivand/PSIRT-to-SecureX-Casebook
chrivand/sxo-workflows
chrivand/sxo_secops_workflow
chrivand/terraform-provider
Terraform Provider for managing Cisco Secure Workload (Tetration) resources.
chrivand/terraform-provider-ciscofdm
Terraform Cisco Firepower FDM Provider
chrivand/tr-05-serverless-cisco-psirt
chrivand/webhook-payload-templates
A collection of Webhook Payload Templates and related integration docs.